i5nipe / android-scripts
Some simple scripts that I use during bug bounty hunting in Android Apps
☆28Updated 3 months ago
Alternatives and similar repositories for android-scripts:
Users that are interested in android-scripts are comparing it to the libraries listed below
- Magic Header Blind Xss tool (deliver blind xss payloads in request headers).☆26Updated 3 years ago
- ☆21Updated 2 years ago
- Enhanced 403 bypass header☆21Updated 2 years ago
- Basic Bash Script to scrape all subdomains from crtsh in a single run☆19Updated 2 years ago
- JsValidator is a tool created for validating the JS files after crawlling it from waybackurls☆20Updated 2 years ago
- Alternative to XSS Hunter for blind XSS.☆51Updated 2 years ago
- ☆14Updated 3 years ago
- gup aka Get All Urls parameters to create wordlists for brute forcing parameters.☆18Updated 3 years ago
- collection of various grep patterns collected from tomnomnom/gf and other places☆22Updated 4 years ago
- Resolvers updated daily for reconftw☆47Updated 2 years ago
- Cool HackerOne Reports☆21Updated 2 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆58Updated 3 years ago
- A browser bookmark to show hidden fields and enable disabled fields on a web page☆20Updated last year
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆16Updated 4 years ago
- BurpSiute - BurpBounty Profiles☆19Updated 2 years ago
- It grep subdomains, email/username, build custom wordlist etc from gau results☆48Updated 2 years ago
- Automate bug bounty recon using bash alias☆14Updated 9 months ago
- Automated blind-xss search for Burp Suite☆23Updated 3 years ago
- ☆21Updated 4 years ago
- ☆12Updated 3 years ago
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 4 years ago
- ☆38Updated 4 years ago
- A very simple AEM detector written in rust.🦀☆19Updated last year
- ☆10Updated 2 years ago
- The wordlists that have been compiled using disclosed reports at HackerOne bug bounty platform☆9Updated 4 years ago
- This is a comprehensive Subdomain Enumeration Guide that traces back to my GitBook.☆31Updated last month
- Droz_scan is a automated script, that runs all the queries of drozer in a single run☆26Updated last year
- Credax - Fuzzing Tool with Slack Notifications. Also removes false positive responses.☆10Updated 3 years ago
- IIS shortname scanner + bruteforce☆52Updated last year
- A solid recon tool I use personally.☆30Updated last year