infosec-au / webappsec-toolkit
Web Application Security related tools. Includes backdoors, proof of concepts and tricks
☆36Updated 10 years ago
Related projects ⓘ
Alternatives and complementary repositories for webappsec-toolkit
- PHP tool to test XSS☆23Updated 5 years ago
- Traverse JS files for APIs/Endpoints☆15Updated 9 years ago
- A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain.☆26Updated 5 years ago
- Simple webinterface combining different recon tools.☆12Updated 6 years ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆33Updated 5 years ago
- Alpha version code of Recon UI☆14Updated 6 years ago
- A Burp Suite content discovery plugin that add the smart into the Buster!☆31Updated 6 years ago
- Chrome Extension for XSS Hunter Payloads☆41Updated 8 years ago
- Burp Intruder File Payload Generator☆18Updated 5 years ago
- Sparty - MS Sharepoint and Frontpage Auditing Tool☆31Updated 10 years ago
- Scripts for Deploying new server☆48Updated 6 years ago
- ☆35Updated 5 years ago
- A bash script that fetches and maintains thousands of DNS resolvers☆65Updated 4 years ago
- Scripts that I've written that others may find useful☆14Updated 2 years ago
- Modified version of ActiveScan++ Burp Suite extension☆31Updated 7 years ago
- A Custom Scanner for Burp☆30Updated 10 years ago
- SubR3con is a script written in python. It uses Sublist3r to enumerate all subdomains of a specific target and then it checks for status …☆18Updated 5 years ago
- Script to automate, manage, and multithread Nikto scans.☆58Updated 4 years ago
- OAuth Security Cheatsheet☆39Updated 10 years ago
- a collection of payloads for common webapps☆73Updated 11 years ago
- Exploit insecure crossdomain.xml files.☆26Updated 7 years ago
- Materials related to the 2017 BSides Las Vegas presentation☆51Updated 3 years ago
- A tool for fetching archived URLs (to be rewritten in Go).☆38Updated 6 years ago
- ☆44Updated 8 years ago
- Of the thousands of lazy reconnaissance scripts, this one is by far the one in this repository.☆11Updated 3 years ago
- https://sites.google.com/securifyinc.com/secblogs/finding-leaked-sensitive-data☆18Updated 6 years ago
- OWASP Skanda - SSRF Exploitation Framework☆36Updated 11 years ago
- Stay on top of new domains! Bug bounty hunters can use this tool to receive Pushbullet notifications each time there is a new target subd…☆25Updated 6 years ago
- Various tools for managing bug bounty recon and exploration.☆46Updated last year