htrgouvea / nozaki
HTTP fuzzer engine security oriented
☆57Updated last week
Alternatives and similar repositories for nozaki:
Users that are interested in nozaki are comparing it to the libraries listed below
- [W.I.P] An ecosystem of crawlers for detecting: leaks, sensitive data exposure and attempts exfiltration of data☆30Updated last week
- ☆28Updated 9 months ago
- Framework for rapid development of offensive security tools☆107Updated 2 months ago
- Dotmil subdomain discovery tool that scrapes domains from official DoD website directories and certificate transparency logs☆96Updated 4 years ago
- 🖇 Enumerate git repository URL from list of URL / User / Org. Friendly to pipeline☆59Updated 4 months ago
- Burp Extension to identify PII data☆21Updated 4 years ago
- qsinject (Query String Inject) is a tool that allows you to quickly substitute query string values with regex matches, one-at-a-time.☆30Updated 4 years ago
- is a tool to automate and organize reconnaissance operations.☆24Updated last year
- ☆49Updated 3 years ago
- ☆39Updated 2 years ago
- A fuzzer made in golang for finding issues like xss, lfi, rce, ssti...that detects issues using change in content length and verify it us…☆63Updated 4 years ago
- A collection of famous recon public scripts, but in bash <3☆27Updated 4 years ago
- ☆32Updated 3 years ago
- Small tool to automate SSRF wordpress and XMLRPC finder☆80Updated 2 years ago
- Differential Fuzzer to hunt for logic bugs on Perl Modules☆25Updated last month
- A simple tool to detect vulnerabilities described here https://portswigger.net/research/browser-powered-desync-attacks.☆36Updated 2 years ago
- Dump all available paths and/or endpoints on WADL file.☆93Updated last week
- SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files☆35Updated 4 years ago
- Collection of content discovery wordlists in one wordlist.☆38Updated 3 years ago
- Declutters URLs in a fast and flexible way, for improving input for web hacking automations such as crawlers and vulnerability scans.☆56Updated 2 years ago
- Host Header Injection Checker☆80Updated 3 years ago
- Extract endpoints marked as disallow in robots files to generate wordlists.☆57Updated 3 years ago
- A Broken-URL Checker☆79Updated 7 years ago
- Create subdomains and files wordlists from your browser history☆12Updated 2 years ago
- Responser☆53Updated 2 years ago
- Pentest stuff☆49Updated last year
- Discovery Header Bug Bounty to DoD☆46Updated 3 years ago
- part of my wordlist to bruteforce DNS to find subdoamains.☆62Updated 3 years ago
- Small snippets and scripts which I use☆34Updated 4 years ago
- Bucket Flaws ( S3 Bucket Mass Scanner ): A Simple Lightweight Script to Check for Common S3 Bucket Misconfigurations☆58Updated 4 years ago