gsmith257-cyber / GraphCrawler
GraphQL automated security testing toolkit
☆316Updated last year
Alternatives and similar repositories for GraphCrawler
Users that are interested in GraphCrawler are comparing it to the libraries listed below
Sorting:
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.☆190Updated 9 months ago
- GQLSpection - parses GraphQL introspection schema and generates possible queries☆84Updated 2 months ago
- Escalate your SSRF vulnerabilities on Modern Cloud Environments. `surf` allows you to filter a list of hosts, returning a list of viable …☆636Updated last year
- The only GraphQL wordlist you'll ever need. Operations, field names, type names... Collected on more than 60k distinct GraphQL schemas.☆361Updated last year
- Automated learning of regexes for DNS discovery☆366Updated 2 years ago
- Vulnerability Scan with Nuclei☆254Updated 5 months ago
- graphw00f is GraphQL Server Engine Fingerprinting utility for software security professionals looking to learn more about what technology…☆628Updated last month
- Fast and customizable vulnerability scanner For JIRA written in Python☆320Updated 4 months ago
- ☆407Updated 3 years ago
- A tool to scrape the AWS ranges looking for a keyword in SSL certificate data.☆232Updated last year
- GraphQL threat framework used by security professionals to research security gaps in GraphQL implementations☆306Updated 2 weeks ago
- Burp extension to create target specific and tailored wordlist from burp history.☆238Updated 3 years ago
- Get related domains / subdomains by looking at Google Analytics IDs☆244Updated 2 years ago
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆310Updated 5 months ago
- Unofficial documentation for the great tool Param Miner☆178Updated 2 years ago
- CrackQL is a GraphQL password brute-force and fuzzing utility.☆328Updated 9 months ago
- Security Auditor Utility for GraphQL APIs☆455Updated 2 months ago
- Filter and enrich a list of subdomains by level☆204Updated last year
- A projectdiscovery driven attack surface monitoring bot powered by axiom☆183Updated 2 years ago
- ☆175Updated 6 months ago
- Build your own reconnaissance system with Osmedeus Next Generation☆189Updated 3 weeks ago
- Nuclei templates written by us.☆270Updated 3 years ago
- Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.☆504Updated 2 months ago
- Prototype pollution scanner using headless chrome☆218Updated 2 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆266Updated 2 years ago
- Monitoring framework to detect and report newly found subdomains on a specific target using various scanning tools☆273Updated 10 months ago
- Generate tens of thousands of subdomain combinations in a matter of seconds☆270Updated last year
- A list of edge cases that occur in bug bounty programs, conversations on how they should be handled. The goal is to standardise the way t…☆231Updated 3 years ago
- IIS shortname scanner written in Go☆332Updated 2 years ago
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆624Updated 5 months ago