kleiton0x00 / ppmapLinks
A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.
☆511Updated 3 years ago
Alternatives and similar repositories for ppmap
Users that are interested in ppmap are comparing it to the libraries listed below
Sorting:
- Gotator is a tool to generate DNS wordlists through permutations.☆480Updated 2 years ago
- A tool to check a bunch of URLs that contain reflecting params.☆579Updated 10 months ago
- ☆294Updated 2 years ago
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆312Updated 7 months ago
- DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it☆452Updated last year
- HTTP Request Smuggling Detection Tool☆512Updated last year
- Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations☆367Updated 5 years ago
- Nuclei templates written by us.☆272Updated 3 years ago
- Fetches javascript file from a list of URLS or subdomains.☆776Updated 2 years ago
- Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one pl…☆982Updated last week
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆625Updated 7 months ago
- Js File Scanner☆168Updated 3 years ago
- Prototype pollution scanner using headless chrome☆218Updated 2 years ago
- Customisable and automated HTTP header injection☆253Updated 11 months ago
- A fast and minimal JS endpoint extractor☆358Updated 7 months ago
- Burpsuite plugin for Interact.sh☆223Updated 11 months ago
- A fuzzer for detecting open redirect vulnerabilities☆762Updated 11 months ago
- This a adaption of tomnomnom's kxss tool with a different output format☆475Updated last year
- Accept URLs on stdin, replace all query string values with a user-supplied value☆823Updated 2 years ago
- Automated learning of regexes for DNS discovery☆370Updated 2 years ago
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆71Updated last year
- Generate tens of thousands of subdomain combinations in a matter of seconds☆270Updated last year
- Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.☆515Updated 3 months ago
- This tool use fuuzzing to try to bypass unknown authentication methods, who knows...☆248Updated 10 months ago
- Takes a list of URLs and returns their HTTP response codes☆395Updated last year
- Default signature for Jaeles Scanner☆322Updated 3 years ago
- Blind XSS Scanner is a tool that can be used to scan for blind XSS vulnerabilities in web applications.☆315Updated 3 weeks ago
- Secret and/or credential patterns used for gf.☆240Updated 2 years ago
- A fast tool to scan client-side prototype pollution vulnerability written in Rust. 🦀☆622Updated 2 years ago
- IIS shortname scanner written in Go☆335Updated 2 years ago