dxa4481 / truffleHogRegexesLinks
These are the regexes that power truffleHog
☆220Updated 2 years ago
Alternatives and similar repositories for truffleHogRegexes
Users that are interested in truffleHogRegexes are comparing it to the libraries listed below
Sorting:
- ☆276Updated 4 years ago
- Fast and stealthy Amazon S3 bucket enumeration tool for pentesters.☆260Updated 3 months ago
- A tool for identifying misconfigured CloudFront domains☆362Updated 5 years ago
- A handy DNS service written in Go to aid in the detection of several types of blind vulnerabilities. It monitors a pentester's server for…☆192Updated 5 years ago
- Find AWS S3 buckets and test their permissions.☆395Updated 2 years ago
- Find cloud assets that no one wants exposed 🔎 ☁️☆350Updated 5 years ago
- A tool geared towards pentesting APIs using OpenAPI definitions.☆182Updated 3 years ago
- AWS S3 Bucket/Object Finder☆122Updated 4 years ago
- 🏰 A Python script for AWS S3 bucket enumeration.☆146Updated 3 years ago
- A highly configurable Framework for easy automated web scanning☆380Updated 5 years ago
- Amazon bucket brute force tool☆102Updated 12 years ago
- ☆173Updated 2 years ago
- A script to extract subdomains/emails for a given domain using SSL/TLS certificate dataset on Censys☆152Updated 2 years ago
- Dr. Watson is a simple Burp Suite extension that helps find assets, keys, subdomains, IP addresses, and other useful information! It's yo…☆218Updated 6 years ago
- Benchmarking repo for secrets scanning☆241Updated last year
- A script to enumerate Google Storage buckets, determine what access you have to them, and determine if they can be privilege escalated.☆543Updated 2 years ago
- Automated reconnaissance wrapper — TomNomNom's meg on steroids. [DEPRECATED]☆306Updated 7 years ago
- Search exposed EBS volumes for secrets☆302Updated 2 years ago
- ☆259Updated last year
- Simple shell script for automated domain recognition with some tools☆304Updated 5 years ago
- Automated security reporting from markdown templates (HackerOne and Bugcrowd are currently the platforms supported)☆459Updated 6 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆107Updated last year
- Methodology for high-quality web application security testing - https://github.com/tprynn/web-methodology/wiki☆212Updated last year
- AWS Extender (Cloud Storage Tester) is a Burp plugin to assess permissions of cloud storage containers on AWS, Google Cloud and Azure.☆256Updated 3 years ago
- A tool used to check if a CNAME resolves to the scope address. If the CNAME resolves to a non-scope address it might be worth checking ou…☆134Updated 2 years ago
- GraphQL security testing tool☆126Updated 3 years ago
- Enumerating IPs in X-Forwarded-Headers to bypass 403 restrictions☆223Updated 3 years ago
- Takes a single wordlist item and tests it one by one over a large collection of websites before moving onto the next. Create signatures t…☆215Updated 5 years ago
- secretz, minimizing the large attack surface of Travis CI☆327Updated 3 years ago
- Pentesting/Bugbounty Dockerfiles.☆177Updated 4 years ago