hahwul / authz0
🔑 Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials.
☆401Updated 3 months ago
Alternatives and similar repositories for authz0:
Users that are interested in authz0 are comparing it to the libraries listed below
- Discover new target domains using Content Security Policy☆393Updated this week
- A Security Tool for Enumerating WebSockets☆343Updated 3 years ago
- Gotator is a tool to generate DNS wordlists through permutations.☆465Updated 2 years ago
- ☆316Updated last month
- mx-takeover focuses DNS MX records and detects misconfigured MX records.☆346Updated last year
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆265Updated last year
- hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.☆437Updated 2 years ago
- Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!☆860Updated last year
- Automated learning of regexes for DNS discovery☆362Updated last year
- Scrape domain names from SSL certificates of arbitrary hosts☆632Updated 10 months ago
- Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one pl…☆945Updated 3 weeks ago
- Vulnerability Scan with Nuclei☆248Updated 2 months ago
- Prototype pollution scanner using headless chrome☆216Updated 2 years ago
- Fast and customizable vulnerability scanner For JIRA written in Python☆318Updated last month
- Customisable and automated HTTP header injection☆243Updated 7 months ago
- Web dashboard for Interactsh client☆199Updated 2 months ago
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆501Updated 2 years ago
- Generate tens of thousands of subdomain combinations in a matter of seconds☆258Updated last year
- Black box fuzzer for web applications☆421Updated 7 months ago
- Golang client for querying SecurityTrails API data☆545Updated last year
- A fast tool to scan client-side prototype pollution vulnerability written in Rust. 🦀☆602Updated last year
- Make URL path combinations using a wordlist☆174Updated last year
- Takes a list of URLs and returns their HTTP response codes☆391Updated last year
- Go client to communicate with Chaos DB API.☆679Updated this week
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆56Updated 9 months ago
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆169Updated 3 months ago
- Fleex makes it easy to create multiple VPS on cloud providers and use them to distribute workloads.☆256Updated 5 months ago
- NoSql Injection CLI tool, for finding vulnerable websites using MongoDB.☆371Updated 3 years ago
- Http request smuggling vulnerability scanner☆225Updated 2 years ago
- HTTP Request Smuggling Detection Tool☆485Updated last year