fuzzdb-project / fuzzdb
Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.
☆8,521Updated last year
Alternatives and similar repositories for fuzzdb
Users that are interested in fuzzdb are comparing it to the libraries listed below
Sorting:
- Web application fuzzer☆6,176Updated 8 months ago
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,787Updated 3 years ago
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆3,932Updated last year
- Scripted Local Linux Enumeration & Privilege Escalation Checks☆7,355Updated last year
- A Tool for Domain Flyovers☆5,759Updated 2 years ago
- Linux privilege escalation auditing tool☆5,943Updated last year
- Git All the Payloads! A collection of web attack payloads.☆3,772Updated 2 years ago
- Automated All-in-One OS Command Injection Exploitation Tool.☆5,251Updated this week
- A swiss army knife for pentesting networks☆8,720Updated last year
- WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.☆5,649Updated 4 months ago
- EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.☆5,292Updated 6 months ago
- Web path scanner☆12,880Updated 2 months ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆8,207Updated last year
- Fast subdomains enumeration tool for penetration testers☆10,338Updated 9 months ago
- Nishang - Offensive PowerShell for red team, penetration testing and offensive security.☆9,181Updated last year
- Advanced vulnerability scanning with Nmap NSE☆3,607Updated 8 months ago
- ✍️ A curated list of CVE PoCs.☆3,398Updated 3 years ago
- HTTP parameter discovery suite.☆5,623Updated 2 months ago
- A curated list of amazingly awesome Burp Extensions☆3,173Updated 3 months ago
- Fast web fuzzer written in Go☆13,934Updated 3 weeks ago
- A toolkit for testing, tweaking and cracking JSON Web Tokens☆5,821Updated 2 weeks ago
- GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems☆11,605Updated 6 months ago
- "Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.☆5,158Updated 3 months ago
- Linux enumeration tool for pentesting and CTFs with verbosity levels☆3,595Updated last year
- 🎯 Command Injection Payload List☆3,269Updated 9 months ago
- Patator is a multi-purpose brute-forcer, with a modular design and a flexible usage.☆3,715Updated 2 months ago
- Automated NoSQL database enumeration and web application exploitation tool.☆3,056Updated 9 months ago
- The Penetration Testers Framework (PTF) is a way for modular support for up-to-date tools.☆5,295Updated 7 months ago
- Monitor linux processes without root permissions☆5,421Updated 2 years ago
- Weaponized web shell☆3,297Updated 6 months ago