infosec-au / webappsec-toolkit
Web Application Security related tools. Includes backdoors, proof of concepts and tricks
☆37Updated 10 years ago
Alternatives and similar repositories for webappsec-toolkit:
Users that are interested in webappsec-toolkit are comparing it to the libraries listed below
- PHP tool to test XSS☆22Updated 5 years ago
- A Burp Suite content discovery plugin that add the smart into the Buster!☆31Updated 7 years ago
- Traverse JS files for APIs/Endpoints☆15Updated 9 years ago
- BurpJDSer-ng☆28Updated 2 weeks ago
- Exploit insecure crossdomain.xml files.☆26Updated 7 years ago
- Simple webinterface combining different recon tools.☆12Updated 7 years ago
- Sparty - MS Sharepoint and Frontpage Auditing Tool☆31Updated 10 years ago
- Chrome Extension for XSS Hunter Payloads☆41Updated 8 years ago
- Alpha version code of Recon UI☆14Updated 7 years ago
- A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain.☆27Updated 6 years ago
- Burp Intruder File Payload Generator☆18Updated 5 years ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆33Updated 6 years ago
- A bash script that fetches and maintains thousands of DNS resolvers☆65Updated 4 years ago
- SubR3con is a script written in python. It uses Sublist3r to enumerate all subdomains of a specific target and then it checks for status …☆18Updated 5 years ago
- Fingerprint a web app using local files as the fingerprint sources☆38Updated 7 years ago
- Of the thousands of lazy reconnaissance scripts, this one is by far the one in this repository.☆11Updated 4 years ago
- My IDA scripts, tips and testing techniques for Thick Client applications.☆17Updated 10 years ago
- Various tools for managing bug bounty recon and exploration.☆47Updated 2 years ago
- Script to automate, manage, and multithread Nikto scans.☆59Updated 5 years ago
- Materials related to the 2017 BSides Las Vegas presentation☆52Updated 4 years ago
- Enumerate subdomains through Virustotal☆32Updated 5 years ago
- Web shells for use in penetration testing☆39Updated 10 years ago
- HackerOne Public Disclosure Slack Bot☆20Updated 2 years ago
- This application is developed to test the race condition vulnerability in the web application. We have discussed about this vulnerability…☆14Updated 8 years ago
- Just a silly recon tool that uses data from SSL Certificates to find potential host names☆30Updated last year
- Advanced XPath Injection Tool☆34Updated 9 years ago
- Stay on top of new domains! Bug bounty hunters can use this tool to receive Pushbullet notifications each time there is a new target subd…☆26Updated 6 years ago
- https://sites.google.com/securifyinc.com/secblogs/finding-leaked-sensitive-data☆17Updated 6 years ago
- OAuth Security Cheatsheet☆39Updated 10 years ago
- Scripts that I've written that others may find useful☆14Updated 2 years ago