h33tlit / Parameter-Reflect-FinderLinks
Parameter-Reflect-Finder is a python based tool that helps you find reflected parameters which can have potential XSS or Open redirection vulnerabilities.
☆15Updated 2 years ago
Alternatives and similar repositories for Parameter-Reflect-Finder
Users that are interested in Parameter-Reflect-Finder are comparing it to the libraries listed below
Sorting:
- ☆11Updated 4 years ago
- Blind spot is a python tool for blind injection vulnerabilities , SQLi time based , Command injection , code injection , SSTI☆27Updated 4 years ago
- Enhanced 403 bypass header☆21Updated 2 years ago
- collection of various grep patterns collected from tomnomnom/gf and other places☆22Updated 4 years ago
- Bug Bounty Program Discovery tool, that discovers bug Bounty Program via security.txt file by default and you can use custom dork☆15Updated 3 years ago
- Tool designed for fast crawl and extract endpoints☆16Updated 4 years ago
- gup aka Get All Urls parameters to create wordlists for brute forcing parameters.☆18Updated 3 years ago
- ☆21Updated 4 years ago
- Credax - Fuzzing Tool with Slack Notifications. Also removes false positive responses.☆10Updated 3 years ago
- A repo for tools, utils, and wrappers that are to small to put in their own repo.☆23Updated 2 years ago
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 4 years ago
- 10 Reset Password Flaws Based on Web Application Security☆11Updated 4 years ago
- A Tool to find subdomains from hackerone reports.☆17Updated 4 years ago
- (Mass) Mining parameters from dark corners of Web Archives☆1Updated 2 years ago
- 3klector is an automation Recon tool which collecting information about Acquisitions and ASN which related to Big Scope company☆48Updated 2 years ago
- Some Tutorials and Things to Help Bug Hunter☆29Updated 4 years ago
- offy is a tool for bugbounty hunters to save money in their EC2 instances☆13Updated 2 years ago
- ☆14Updated 4 years ago
- An SSRF detector tool written in golang. I have fixed some errors and added some more payloads to it. But the tool credits go to z0idsec.☆45Updated 4 years ago
- JsValidator is a tool created for validating the JS files after crawlling it from waybackurls☆20Updated 2 years ago
- ☆19Updated 3 years ago
- Oneliners curated from my experience and from the internet☆22Updated 4 years ago
- This repo contain scripts written for finding subdomains using various available tools☆26Updated 4 years ago
- ☆9Updated 3 years ago
- A solid recon tool I use personally.☆30Updated 2 years ago
- Automate your subdomain enumeration, subdomain takeover, management, nuclei, etc. in one go.☆10Updated 3 years ago
- Framework to automate Bug Bounty Reconnaissance☆44Updated 4 years ago
- A Burp Suite extension to parse Content-Transfer-Encoding: quoted-printable emails received in Burpcollaborator's SMTP☆30Updated 4 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆59Updated 3 years ago
- Resolvers updated daily for reconftw☆47Updated 2 years ago