Simple python script supported with BurpBouty profile that helps you to detect SQL injection "Error based" by sending multiple requests with 14 payloads and checking for 152 regex patterns for different databases.
☆632Updated this week
Alternatives and similar repositories for SQLiDetector
Users that are interested in SQLiDetector are comparing it to the libraries listed below
Sorting:
- ShoLister is a tool that collects all available subdomains for specific hostname or organization from Shodan. The tool is designed to be …☆60May 10, 2022Updated 3 years ago
- User-Agent , X-Forwarded-For and Referer SQLI Fuzzer☆382May 19, 2023Updated 2 years ago
- A Powerful Sensor Tool to discover login panels, and POST Form SQLi Scanning☆524Jul 5, 2023Updated 2 years ago
- A python tool used to discover endpoints, potential parameters, a target specific wordlist for a given target and secrets☆1,524Jan 15, 2026Updated last month
- Automated Tool for Testing Header Based Blind SQL Injection☆323Jul 23, 2023Updated 2 years ago
- Generate tens of thousands of subdomain combinations in a matter of seconds☆273Sep 25, 2023Updated 2 years ago
- Jeeves SQLI Finder☆215May 13, 2022Updated 3 years ago
- i will upload more templates here to share with the comunity.☆567Apr 17, 2024Updated last year
- Automation Recon tool which works with Large & Medium scopes. It performs a lot of tasks and gets back all the results in separated files…☆684Jul 15, 2024Updated last year
- mx-takeover focuses DNS MX records and detects misconfigured MX records.☆357Jul 17, 2023Updated 2 years ago
- Automation for javascript recon in bug bounty.☆1,069Sep 9, 2023Updated 2 years ago
- A tool to check a bunch of URLs that contain reflecting params.☆598Aug 4, 2024Updated last year
- declutters url lists for crawling/pentesting☆1,526Feb 23, 2025Updated last year
- An Automated Subdomain Enumeration Tool☆292Oct 16, 2024Updated last year
- An automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirects☆970Dec 8, 2021Updated 4 years ago
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆89May 2, 2024Updated last year
- Finding XSS during recon☆273Sep 13, 2022Updated 3 years ago
- A repository that includes all the important wordlists used while bug hunting.☆1,378Mar 11, 2023Updated 2 years ago
- Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist☆1,497Jan 8, 2026Updated last month
- This is go CLI tool for send fast Multiple get HTTP request.☆283Jan 20, 2023Updated 3 years ago
- An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws☆3,917Oct 4, 2025Updated 4 months ago
- Real-world infosec wordlists, updated regularly☆1,640Updated this week
- Use favicons to improve your target recon phase. Quickly detect technologies, WAF, exposed panels, known services.☆232Feb 2, 2026Updated 3 weeks ago
- An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters and…☆802Jul 4, 2023Updated 2 years ago
- fuzzuli is a url fuzzing tool that aims to find critical backup files by creating a dynamic wordlist based on the domain.☆936Aug 24, 2023Updated 2 years ago
- Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one pl…☆1,039Aug 23, 2025Updated 6 months ago
- Rockyou for web fuzzing☆3,023Feb 11, 2026Updated 2 weeks ago
- Open Redirection Analyzer☆812Mar 5, 2023Updated 2 years ago
- bypass-url-parser☆1,113Feb 21, 2026Updated last week
- De-clutter a list of URLs☆386Feb 3, 2026Updated 3 weeks ago
- Hidden parameters discovery suite☆2,027Sep 8, 2024Updated last year
- Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!☆975Jan 12, 2024Updated 2 years ago
- ☆852Dec 26, 2025Updated 2 months ago
- Smart context-based SSRF vulnerability scanner.☆360May 5, 2022Updated 3 years ago
- A Burp Suite extension for identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violati…☆395Feb 18, 2026Updated last week
- 1337 Wordlists for Bug Bounty Hunting☆931Updated this week
- Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing☆3,010Jun 24, 2024Updated last year
- Gotator is a tool to generate DNS wordlists through permutations.☆505Jul 17, 2022Updated 3 years ago
- 🚫 Advanced tool for security researchers to bypass 403/40X restrictions through smart techniques and adaptive request manipulation. Fast…☆1,503Feb 5, 2026Updated 3 weeks ago