hansmach1ne / LFImap
Local File Inclusion discovery and exploitation tool
☆261Updated 2 weeks ago
Alternatives and similar repositories for LFImap:
Users that are interested in LFImap are comparing it to the libraries listed below
- Smart context-based SSRF vulnerability scanner.☆349Updated 2 years ago
- ☆237Updated 3 years ago
- Automated Tool for Testing Header Based Blind SQL Injection☆266Updated last year
- User-Agent , X-Forwarded-For and Referer SQLI Fuzzer☆381Updated last year
- A simple Burp Suite extension to crawl JavaScript (JS) files in passive mode and display the results directly on the issues☆347Updated last year
- This is a python wrapper around the amazing KNOXSS API by Brute Logic☆236Updated this week
- Weekly updated list of missing CVEs in nuclei templates official repository. Mainly built for bug bounty, but useful for penetration test…☆345Updated this week
- i will upload more templates here to share with the comunity.☆538Updated 9 months ago
- Useful "Match and Replace" burpsuite rules☆340Updated last year
- Automatic Bug finder with buprsuite☆166Updated last year
- This tool use fuuzzing to try to bypass unknown authentication methods, who knows...☆236Updated 5 months ago
- XSS payloads for bypassing WAF. This repository is updating continuously.☆229Updated 10 months ago
- Never forget where you inject.☆227Updated 2 years ago
- Make URL path combinations using a wordlist☆174Updated last year
- Enumerate / Dump Docker Registry☆166Updated 9 months ago
- My Priv8 Nuclei Templates☆296Updated 8 months ago
- This Burp Suite extension allows for the automatic creation and deletion of an upstream SOCKS5 proxy on popular cloud services.☆239Updated last year
- Crtsh Subdomain Enumeration | This bash script makes it easy to quickly save and parse the output from https://crt.sh website.☆204Updated 4 months ago
- De-clutter a list of URLs☆312Updated last month
- Fuzz 401/403/404 pages for bypasses☆280Updated last month
- EndExt is a .go tool for extracting all the possible endpoints from the JS files☆187Updated 6 months ago
- Gotator is a tool to generate DNS wordlists through permutations.☆465Updated 2 years ago
- Advanced Time-based Blind SQL Injection fuzzer for HTTP Headers☆292Updated 9 months ago
- ☆519Updated 6 months ago
- jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice☆252Updated 9 months ago
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆56Updated 8 months ago
- A Chrome/Firefox browser extension to show alerts for reflected query params, show Wayback archive links for the current path, show hidde…☆333Updated last month
- A tool designed to automate various techniques in order to bypass HTTP 401 and 403 response codes and gain access to unauthorized areas i…☆169Updated 4 months ago
- Bambdas collection for Burp Suite Professional and Community.☆218Updated last week
- Finding XSS during recon☆254Updated 2 years ago