epsylon / Smuggler
Smuggler can detect and exploit -HTTP Smuggling- vulnerabilities.
☆37Updated 3 months ago
Alternatives and similar repositories for Smuggler:
Users that are interested in Smuggler are comparing it to the libraries listed below
- golang tool to scan domains or single domains with know security issues against xmlrpc☆60Updated last year
- Single-WebApp-Target essentials testing methodology tool starting at recon-information gathering for the juicy stuff ended up in exploita…☆22Updated 3 years ago
- Simple tool to test for SSRF/OOB HTTP Read within the Path of a request☆30Updated 5 years ago
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 3 years ago
- Blind spot is a python tool for blind injection vulnerabilities , SQLi time based , Command injection , code injection , SSTI☆27Updated 4 years ago
- My recon script☆51Updated 5 years ago
- Domain availbility checker☆39Updated 3 years ago
- Alternative to XSS Hunter for blind XSS.☆51Updated 2 years ago
- Messy BurpSuite plugin for SQL Truncation vulnerabilities.☆63Updated 4 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆58Updated 3 years ago
- Tool to automate recon☆43Updated 3 years ago
- WordPress Bruteforce List, Default paths and endpoints☆65Updated 2 years ago
- Bug Bounty Recon wordlist Generator☆21Updated 4 years ago
- ☆38Updated 4 years ago
- All known and unknown public POC's for wordpress themes and plugins☆79Updated 3 years ago
- RECON Notes taking from every fucking book about bugbounty and web-app penetration testing exists☆20Updated 4 years ago
- Framework to automate Bug Bounty Reconnaissance☆42Updated 4 years ago
- SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files☆36Updated 4 years ago
- ☆11Updated 4 years ago
- Small script to check a list of domains against open redirect vulnerability☆26Updated 3 years ago
- ☆19Updated 4 years ago
- Bug Bounty Tools☆34Updated 4 years ago
- Wrapper around LinkFinder to quickly determine whether endpoints have been added/removed to JavaScript files.☆41Updated 5 years ago
- Subdomain Takeover tool with web UI☆56Updated last year
- Host Header Injection Checker☆80Updated 2 years ago
- The wordlists that have been compiled using disclosed reports at HackerOne bug bounty platform☆9Updated 4 years ago
- Security test tool for Blind XSS☆26Updated 4 years ago
- Literally spray blind xss payloads everywhere.☆25Updated 3 years ago
- A Proof of Concept for Clickjacking Attacks☆54Updated 4 years ago
- Shodan Favicon Hash Generator By Aziz Hakim @eternyle☆25Updated 8 months ago