emadshanab / LFI-Payload-List
LFI Payloads List coolected from github repos
☆78Updated 5 years ago
Alternatives and similar repositories for LFI-Payload-List
Users that are interested in LFI-Payload-List are comparing it to the libraries listed below
Sorting:
- Wordlist to bruteforce for LFI☆123Updated 5 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆132Updated 4 years ago
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆164Updated 4 years ago
- Prototype Pollution Scanner☆117Updated 4 years ago
- All known and unknown public POC's for wordpress themes and plugins☆78Updated 3 years ago
- Nuclei Templates - Here you will find the templates I use while hunting☆118Updated 3 years ago
- Enumerate Subdomains Through Google Dorks (Bypassed Page Filter)☆124Updated last month
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆119Updated last year
- ☆87Updated 3 years ago
- golang tool to scan domains or single domains with know security issues against xmlrpc☆62Updated last year
- 📚 An ultimate collection wordlists of the best-known CMS☆89Updated 11 months ago
- ☆78Updated 2 years ago
- Small tool to automate SSRF wordpress and XMLRPC finder☆81Updated 2 years ago
- A replacement of "qsreplace", accepts URLs as standard input, replaces all query string values with user-supplied values and stdout.☆105Updated 3 years ago
- Burp Bounty profiles☆83Updated 3 years ago
- ☆76Updated last year
- Check AWS S3 instances for read/write/delete access☆121Updated 3 years ago
- Burpsuite plugin for Interact.sh☆221Updated 10 months ago
- A combined wordlists for files and directory discovery☆125Updated 4 years ago
- ☆154Updated 2 years ago
- Community curated list of template files for the nuclei engine to find security vulnerability and fingerprinting the targets.☆62Updated last year
- Dotmil subdomain discovery tool that scrapes domains from official DoD website directories and certificate transparency logs☆96Updated 4 years ago
- ☆95Updated 3 years ago
- HTTP parameter discovery suite.☆63Updated 4 years ago
- Extract JavaScript files from burp suite project with ease.☆89Updated 3 years ago
- The project aims at creating target-specific wordlists for any web application that you are testing.☆66Updated 2 years ago
- ☆113Updated 2 years ago
- A simple Swagger-ui scanner that can detect old versions vulnerable to various XSS attacks☆59Updated 5 years ago
- Describe how to use ffuf different options with examples☆87Updated 2 years ago
- ☆158Updated last year