johnsaigle / scary-strings
Collection of wordlists containing dangerous function calls in many languages
☆46Updated this week
Alternatives and similar repositories for scary-strings
Users that are interested in scary-strings are comparing it to the libraries listed below
Sorting:
- Nuclei plugins to audit Chrome extensions☆64Updated 10 months ago
- Hijack a slack bot to phish your way in☆55Updated last month
- FrogPost: postMessage Security Testing Tool☆74Updated last week
- Additional active scan checks for BURP☆27Updated 7 months ago
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a p…☆30Updated 4 months ago
- Crawlector is a threat hunting framework designed for scanning websites for malicious objects.☆126Updated last year
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆39Updated 2 years ago
- Handy scripts and one-liners to make life easier☆37Updated 2 years ago
- Burp Suite extension for testing Passkey systems.☆69Updated last month
- TruffleHog Explorer, a user-friendly web-based tool to visualize and analyze data extracted using TruffleHog.☆39Updated 3 months ago
- Objectify-s3 is a tool that recursively checks AWS S3 buckets and objects for misconfigured permissions.☆15Updated 9 months ago
- Looks for parameters in urls☆34Updated 7 months ago
- A collection of Turbo Intruder scripts.☆59Updated 3 months ago
- Autonomous AI C2☆30Updated 9 months ago
- A tech enumeration toolkit focused on 404 Not found pages.☆25Updated 7 months ago
- moniorg is a tool that leverages crt.sh website to monitor domains of a target☆47Updated 2 years ago
- WhereToGo - is a list of popular services that might be used in organizations. By having an account of the user - you can try to find ent…☆122Updated 2 years ago
- Find the remote website version based on a git repository☆126Updated 3 years ago
- Next generation fireprox AWS API endpoint creation utility.☆52Updated 2 years ago
- A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter sp…☆20Updated 3 months ago
- Advanced test for proxy & waf☆13Updated 8 months ago
- Hunt SSL Certificates for interesting keywords on major cloud service providers / internet☆39Updated 3 weeks ago
- Python script implementing the favicon hash trick to find subdomains.☆34Updated 2 years ago
- swagroutes is a command-line tool that extracts and lists API routes from Swagger files in YAML or JSON format.☆58Updated 2 years ago
- A simple script that generates an Excel friendly CSV file from an Amass JSON file.☆13Updated 3 years ago
- Weaponized EvilnoVNC: Scalable and semi-automated MFA-Phishing☆48Updated 2 months ago
- ☆55Updated 2 years ago
- A python3 script searching for secret on swaggerhub☆65Updated 3 years ago
- ai-based domain name generation☆91Updated 3 months ago
- A blazing-fast, thread-safe, straightforward and zero memory allocations tool to swiftly generate alternative IP(v4) address representati…☆86Updated last year