johnsaigle / scary-stringsLinks
If these strings are in your code, you might have a problem!
☆50Updated 2 months ago
Alternatives and similar repositories for scary-strings
Users that are interested in scary-strings are comparing it to the libraries listed below
Sorting:
- Nuclei plugins to audit Chrome extensions☆65Updated last year
- Burp Suite extension for testing Passkey systems.☆75Updated 7 months ago
- Identify hardcoded secrets in static structured text (version 2)☆95Updated 9 months ago
- Hijack a slack bot to phish your way in☆57Updated 4 months ago
- FrogPost: postMessage Security Testing Tool☆98Updated last week
- ☆90Updated 3 years ago
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a p…☆30Updated 10 months ago
- A custom built DNS bruteforcer with multi-threading, and handling of bad resolvers.☆57Updated 3 years ago
- Damn Vulnerable Browser Extension (DVBE), previously named as Badly Coded Browser Extension (BCBE), is an open-source vulnerable Chrome E…☆31Updated 8 months ago
- Burp Suite extension for bypassing client-side encryption for pentesting and bug bounty in WebSocket☆85Updated last month
- Additional active scan checks for BURP☆28Updated last year
- A blazing-fast, thread-safe, straightforward and zero memory allocations tool to swiftly generate alternative IP(v4) address representati…☆93Updated 2 years ago
- swagroutes is a command-line tool that extracts and lists API routes from Swagger files in YAML or JSON format.☆61Updated 2 years ago
- A research project to add some brrrrrr to Burp☆194Updated 9 months ago
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆39Updated 3 years ago
- A Bug Bounty Platform that allows hunters to issue commands over a geo-distributed cluster. The ideal user is someone who is attempting t…☆47Updated last year
- A python3 script searching for secret on swaggerhub☆66Updated 3 years ago
- ☆114Updated 2 years ago
- TruffleHog Explorer, a user-friendly web-based tool to visualize and analyze data extracted using TruffleHog.☆50Updated 10 months ago
- Crawlector is a threat hunting framework designed for scanning websites for malicious objects.☆125Updated last year
- Monitoring the Cloud Landscape☆90Updated this week
- a hackbot proof-of-concept☆40Updated last year
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.☆42Updated last year
- moniorg is a tool that leverages crt.sh website to monitor domains of a target☆47Updated 2 years ago
- A collection of BBRF agents that can be deployed to AWS lambda☆23Updated last year
- Unicode Security Toolkit☆39Updated last year
- Jumpstart multiple WebSocket servers quickly☆32Updated 3 years ago
- yataf extracts secrets and paths from files or urls - its best used against javascript files☆53Updated last year
- Open a DNS server that knows no records but records every request. Used for DNS exfiltration.☆69Updated 3 years ago
- ☆39Updated last year