hahwul / backbomb
💣 Dockerized penetration-testing/bugbounty/app-sec testing environment
☆32Updated 3 years ago
Alternatives and similar repositories for backbomb:
Users that are interested in backbomb are comparing it to the libraries listed below
- A set of tools, procedures, and playbooks for performing bug bounties☆15Updated 6 years ago
- XSS scanning with Dalfox on Github-action☆23Updated last year
- WebSocket Connection Smuggler☆44Updated 2 years ago
- Security test tool for Blind XSS☆26Updated 4 years ago
- Extract endpoints from specific Git repository for fuzzing☆22Updated 4 years ago
- A tools for JavaScript Recon☆21Updated 4 years ago
- A simple tool which makes creating nuclei templates even easier.☆36Updated 8 months ago
- Burp Suite extension for extracting metadata from files☆20Updated 4 years ago
- Advanced Recon Tool☆26Updated 4 years ago
- Turn your VPS into an attack box☆34Updated 11 months ago
- Simple tools to handle string and generate subdomain permutations☆14Updated 2 years ago
- Information-Gathering Shell Script☆29Updated 4 years ago
- Mole is a framework for identifying and exploiting out-of-band application vulnerabilities.☆57Updated 4 years ago
- OWASP ZAP add-on to detect reflected parameter vulnerabilities efficiently☆12Updated 4 years ago
- A collection of awesome one-liner scripts especially for bug bounty tips.☆15Updated 4 years ago
- Gampung tools for find nuclei template from github☆10Updated last year
- Atlassian Confluence CVE-2021-26084 one-liner mass checker☆30Updated 3 years ago
- Python script to launch burp scans automatically☆32Updated 3 years ago
- All the members of bugbounty and infosec. If you don't know who to follow, see!☆35Updated 2 years ago
- A BurpSuite plugin for BBRF☆24Updated 3 months ago
- assets for www.hahwul.com☆21Updated this week
- My fuzz repo!☆22Updated last year
- Pipe different tools with google dork Scanner☆55Updated 4 years ago
- Related subdomains finder☆29Updated 2 years ago
- parse ffuf & map endpoints to wordlists☆20Updated 4 years ago
- Pentesting notes☆17Updated this week
- OSINT tool abusing SecurityTrails domain suggestion API to find potentially related domains by keyword and brute force.☆25Updated last year
- S3 bucket enumerator☆29Updated 5 years ago
- Extract parameters/paths from urls☆17Updated 4 years ago
- Parallelized enumeration tool for red team engagements and bug bounty programs.☆18Updated 3 years ago