johnsaigle / scary-strings
Collection of wordlists containing dangerous function calls in many languages
☆24Updated last week
Alternatives and similar repositories for scary-strings:
Users that are interested in scary-strings are comparing it to the libraries listed below
- Extract endpoints from specific Git repository for fuzzing☆22Updated 4 years ago
- This extension replaces the default repeater tab name with the URL path of the repeater request.☆22Updated 3 years ago
- Attempt zone transfers on domains☆17Updated 3 years ago
- This extension redacts potentially sensitive header and parameter values from requests using Shannon Entropy analysis.☆12Updated 4 years ago
- Get URLs from the Wayback Machine. Able to handle large outputs.☆22Updated last year
- Tool to find stored robots.txt files from the past☆18Updated last year
- A simple tool which makes creating nuclei templates even easier.☆36Updated 6 months ago
- Takes a list of domains as the input, checks if they have a security.txt, outputs the results.☆13Updated 4 years ago
- Return domains in CSP headers in http response☆15Updated 3 years ago
- qsinject (Query String Inject) is a tool that allows you to quickly substitute query string values with regex matches, one-at-a-time.☆30Updated 4 years ago
- Parallelized enumeration tool for red team engagements and bug bounty programs.☆18Updated 3 years ago
- A tools for JavaScript Recon☆21Updated 4 years ago
- ☆36Updated 4 years ago
- A BurpSuite plugin for BBRF☆24Updated 2 months ago
- parse ffuf & map endpoints to wordlists☆19Updated 3 years ago
- ☆9Updated 3 years ago
- Tool to extract & validate google fcm server keys from apks☆27Updated 4 years ago
- Ffuf output browser☆38Updated last year
- Related subdomains finder☆29Updated 2 years ago
- A tool for check available dependency packages across npmjs, PyPI or RubyGems registry.☆28Updated 2 years ago
- A companion repo to accompany detailed guides and YouTube content to allow users to follow along☆13Updated 4 years ago
- Tool for making it easy to collect dns results from the CLI☆39Updated 5 months ago
- Pythonize Intruder Payload☆13Updated 4 years ago
- A notification script to help with Recon Stuff☆14Updated 3 years ago
- Generate a dynamic PAC script that will route traffic to your Burp proxy only if it matches the scope defined in your Burp target.☆34Updated 3 years ago
- A command-line tool for Cross-Site WebSocket Hijacking☆39Updated last year
- A set of tools, procedures, and playbooks for performing bug bounties☆15Updated 6 years ago
- Image Tragick Exploit Tool Using Burp Collaborator☆35Updated 7 months ago
- Security test tool for Blind XSS☆26Updated 4 years ago