kleiton0x00 / CORS-one-liner
A one liner Bash command which finds CORS in every possible endpoint.
☆145Updated 4 years ago
Alternatives and similar repositories for CORS-one-liner:
Users that are interested in CORS-one-liner are comparing it to the libraries listed below
- A reverse whois tool based on Whoxy API.☆166Updated last year
- A tool for append URLs, skipping duplicates/paths & combine parameters.☆121Updated 3 years ago
- The scripts I write to help me on my bug bounty hunting☆121Updated 3 years ago
- ☆126Updated 4 years ago
- Urls de-duplication tool for better recon.☆139Updated 9 months ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆132Updated 4 years ago
- ☆52Updated last year
- Prototype pollution scanner using headless chrome☆218Updated 2 years ago
- Prototype Pollution Scanner☆115Updated 4 years ago
- Simple fork from degoogle original project with bug hunting purposes☆87Updated 2 years ago
- A combined wordlists for files and directory discovery☆125Updated 3 years ago
- Find subdomains and takeovers.☆84Updated 2 years ago
- A script that can resolve an input file of domains and scan them with masscan☆157Updated 4 years ago
- A collection of over 5.1 million sub-domains and assets belonging to public bug bounty programs, compiled into a repo, for performing bul…☆99Updated 3 years ago
- Customisable and automated HTTP header injection☆245Updated 10 months ago
- Cross Origin Resource Sharing MisConfiguration Scanner☆173Updated 3 years ago
- Get related domains / subdomains by looking at Google Analytics IDs☆245Updated 2 years ago
- Small tool to automate SSRF wordpress and XMLRPC finder☆80Updated 2 years ago
- A script for installing private Burp Collaborator with free Let's Encrypt SSL-certificate☆209Updated 10 months ago
- Bucky (An automatic S3 bucket discovery tool)☆196Updated 3 years ago
- Secret and/or credential patterns used for gf.☆241Updated 2 years ago
- Fast tool to extract all subdomains from crt.sh website. Output will be up to sub.sub.sub.subdomain.com with standard and advanced search…☆114Updated 3 years ago
- 📚 An ultimate collection wordlists of the best-known CMS☆89Updated 10 months ago
- Find endpoints on GitHub.☆196Updated 2 years ago
- A blazing fast & feature rich Amazon S3 bucket enumerator.☆96Updated 2 years ago
- IP Lookups for Open Ports and Vulnerabilities from internetdb.shodan.io☆127Updated 3 years ago
- A tool to perform permutations, mutations and alteration of subdomains in golang.☆159Updated last year
- List of fresh DNS resolvers updated daily☆108Updated 2 years ago
- A Simple Tool to Pull Paid Bounty Scopes for Wide Recon Actvities☆104Updated 4 years ago
- ASN reconnaissance script☆127Updated last year