h33tlit / secret-regex-list
List of regex for scraping secret API keys and juicy information.
☆696Updated 2 years ago
Alternatives and similar repositories for secret-regex-list:
Users that are interested in secret-regex-list are comparing it to the libraries listed below
- Awesome list of step by step techniques to achieve Remote Code Execution on various apps!☆1,873Updated last year
- Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!☆858Updated last year
- bypass-url-parser☆1,056Updated last week
- My cheatsheet notes to pentest AWS infrastructure☆666Updated 2 years ago
- ☆1,120Updated last year
- BUG BOUNTY WRITEUPS - OWASP TOP 10 🔴🔴🔴🔴✔☆834Updated 2 years ago
- jsleak is a tool to find secret , paths or links in the source code during the recon.☆514Updated 3 weeks ago
- Tool to bypass 403/40X response codes.☆1,178Updated last month
- Real-world infosec wordlists, updated regularly☆1,444Updated this week
- 「🔑」A tool used to hunt down API key leaks in JS files and pages☆651Updated last month
- AllForOne allows bug bounty hunters and security researchers to collect all Nuclei YAML templates from various public repositories,☆578Updated 11 months ago
- My subdomain enumeration script. It's unique in the way it is built upon.☆675Updated 6 months ago
- ☆748Updated 7 months ago
- Golden Guide☆481Updated last year
- A command-line utility designed to discover URLs for a given domain in a simple, efficient way. It works by gathering information from a …☆584Updated last week
- An extremely effective subdomain enumeration wordlist of 3,000,000 lines, crafted by harvesting SSL certs from the entire IPv4 space.☆587Updated last year
- Extract URLs, paths, secrets, and other interesting bits from JavaScript☆1,489Updated 9 months ago
- Small tool to Grab subdomains using Shodan api.☆390Updated 3 months ago
- ProjectDiscovery's Open Source Tool Manager☆775Updated this week
- Automated pentest reporting with custom Word templates, project tracking, and client management tools. Streamline your security workflows…☆830Updated last month
- ⡷⠂𝚔𝚊𝚛𝚖𝚊 𝚟𝟸⠐⢾ is a Passive Open Source Intelligence (OSINT) Automated Reconnaissance (framework)☆841Updated 8 months ago
- ☆565Updated 2 years ago
- hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.☆437Updated 2 years ago
- Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more☆1,618Updated last month
- Fast and customizable subdomain wordlist generator using DSL☆772Updated this week
- Golang client for querying SecurityTrails API data☆545Updated last year
- The most powerful CRLF injection (HTTP Response Splitting) scanner.☆575Updated last year
- A python tool used to discover endpoints, potential parameters, and a target specific wordlist for a given target☆1,247Updated 2 months ago
- Awesome cloud enumerator☆958Updated 6 months ago
- An automated tool which can simultaneously crawl, fill forms, trigger error/debug pages and "loot" secrets out of the client-facing code …☆399Updated last month