h33tlit / Parameter-Reflect-Finder
Parameter-Reflect-Finder is a python based tool that helps you find reflected parameters which can have potential XSS or Open redirection vulnerabilities.
☆15Updated 2 years ago
Alternatives and similar repositories for Parameter-Reflect-Finder:
Users that are interested in Parameter-Reflect-Finder are comparing it to the libraries listed below
- JsValidator is a tool created for validating the JS files after crawlling it from waybackurls☆18Updated last year
- Some wordlists collected form github to all bug bounty hunters.☆27Updated 3 years ago
- Enhanced 403 bypass header☆21Updated 2 years ago
- Some of the gf patterns which i use☆40Updated 3 years ago
- collection of various grep patterns collected from tomnomnom/gf and other places☆21Updated 4 years ago
- ☆11Updated 4 years ago
- Credax - Fuzzing Tool with Slack Notifications. Also removes false positive responses.☆10Updated 3 years ago
- Bug Bounty Program Discovery tool, that discovers bug Bounty Program via security.txt file by default and you can use custom dork☆15Updated 2 years ago
- ☆21Updated 4 years ago
- Resolvers updated daily for reconftw☆47Updated 2 years ago
- 3klector is an automation Recon tool which collecting information about Acquisitions and ASN which related to Big Scope company☆48Updated 2 years ago
- A solid recon tool I use personally.☆30Updated last year
- Cool HackerOne Reports☆19Updated 2 years ago
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 3 years ago
- Script that download 37+ open source nuclei templates☆43Updated 2 years ago
- In this repo, I have created a subdomain enumeration function that grab subdomains in deep.☆22Updated last year
- Magic Header Blind Xss tool (deliver blind xss payloads in request headers).☆27Updated 3 years ago
- Stuff for bug bounty☆28Updated 2 years ago
- It grep subdomains, email/username, build custom wordlist etc from gau results☆48Updated 2 years ago
- JSNotify is a Python script designed to monitor JavaScript files in a specified directory for changes. This tool can be used by developer…☆18Updated last year
- ☆21Updated 2 years ago
- Turns a list of URLs into hostnames.☆16Updated last year
- ☆14Updated 3 years ago
- Blind spot is a python tool for blind injection vulnerabilities , SQLi time based , Command injection , code injection , SSTI☆27Updated 4 years ago
- This tool is a simple LFI, RFI, RCE, and Joomla Components vulnerability scanner, created by JayCyberSecurity☆23Updated 2 years ago
- A Tool to find subdomains from hackerone reports.☆16Updated 3 years ago
- IIS shortname scanner + bruteforce☆51Updated last year
- This tool allows you to find ssti vulnerability with ease!☆19Updated 2 years ago
- Tool designed for fast crawl and extract endpoints☆15Updated 3 years ago
- Techniques / Tips and tricks for finding sensitive data exposures in Github for Penetration Testers / Bug Bounty Hunters☆16Updated 4 years ago