This repository contains hit lists to use for web application content discovery.
☆11May 31, 2017Updated 8 years ago
Alternatives and similar repositories for content-discovery-hit-lists
Users that are interested in content-discovery-hit-lists are comparing it to the libraries listed below
Sorting:
- This is a Burp extension for adding additional payloads to active scanner that require out-of-band validation. Works great with XSSHunter☆20Feb 16, 2017Updated 9 years ago
- A Burp Suite Professional extension for decrypting/decoding various types of cookies.☆12Jun 12, 2019Updated 6 years ago
- ☆16Oct 24, 2018Updated 7 years ago
- Go API Client for Metasploit RPC API☆18May 23, 2025Updated 9 months ago
- Burp extension to find and decode BigIP and Netscaler cookies☆15Jul 20, 2018Updated 7 years ago
- A library to facilitate the exploitation of padding oracle attacks☆15Apr 1, 2015Updated 10 years ago
- PoC's and Slides from 'Gophers, whales and.. clouds? Oh my!' BSides Wellington presentation by Glenn 'devalias' Grant☆17Mar 3, 2018Updated 8 years ago
- Burp plugin to do random fuzzing of HTTP requests☆33Jan 31, 2017Updated 9 years ago
- This is a repository containing example code for how you can use unit tests to protect against security regression.☆19Jun 26, 2017Updated 8 years ago
- A curated list of awesome AWS IAM tools, libraries guides, blogs, and other resources☆17Jan 5, 2020Updated 6 years ago
- A tool for fetching archived URLs (to be rewritten in Go).☆41Jul 19, 2018Updated 7 years ago
- Just lists of lists of lists !☆17Oct 13, 2025Updated 4 months ago
- An example of high-QPS requesting Burp Intruder style on AWS Lambda via self-invocation.☆22Nov 15, 2018Updated 7 years ago
- Squirtle the Browser-based NTLM Attack Toolkit☆17Apr 13, 2015Updated 10 years ago
- A Burp Suite extension to add a custom header (e.g. JWT)☆20Dec 9, 2021Updated 4 years ago
- A Burp Suite extension that automatically marks similar requests as 'out-of-scope'.☆43May 1, 2020Updated 5 years ago
- Python SDK to access the vulnerability database☆22Sep 5, 2019Updated 6 years ago
- ☆23Feb 18, 2018Updated 8 years ago
- A Burp Suite extension which performs checks for cross-domain scripting against the DOM, subresource integrity checks, and evaluates Java…☆26Mar 23, 2022Updated 3 years ago
- A framework for exploiting padding oracles in network-based applications☆26Feb 25, 2023Updated 3 years ago
- Burp with Friends☆102Jan 21, 2023Updated 3 years ago
- Image size issues plugin for Burp Suite☆95Jun 27, 2018Updated 7 years ago
- A burp extension to generate sqlmap PoC from target HTTP request.☆27Jan 8, 2017Updated 9 years ago
- Golang IPv6 address enumeration☆358May 27, 2019Updated 6 years ago
- Check All APK's -- scripts for checking your phone for malware☆30Aug 8, 2017Updated 8 years ago
- A repository for possible zgrab2 configurations☆28Dec 3, 2022Updated 3 years ago
- Easy to use command line security scanner☆58Feb 27, 2016Updated 10 years ago
- A pattern for reasonably secure Electron applications☆73Feb 4, 2023Updated 3 years ago
- A simple Burp extension for scanning stuffs in CTF☆30Jan 22, 2018Updated 8 years ago
- A small utility to generate a word security report by using a knowledge base(XLSX).☆12Nov 25, 2023Updated 2 years ago
- Malware sandbox evasion tricks and solution☆32Jul 5, 2017Updated 8 years ago
- Control yours and others pishocks via VRChat OSC☆10May 17, 2024Updated last year
- An interactive OOB XXE data exfiltration tool☆92May 31, 2017Updated 8 years ago
- Burp extension to perform Java Deserialization Attacks☆216Feb 2, 2024Updated 2 years ago
- An example of obtaining RCE via Redis and CSRF☆76Sep 11, 2016Updated 9 years ago
- Drivers for interfacing HackRF radios with REDHAWK☆11Jun 18, 2020Updated 5 years ago
- Unity package for cutting the selected area of the mesh for HoloLens.☆10Sep 21, 2020Updated 5 years ago
- Pivot into private VPC networks using a VPN connection☆43Oct 8, 2019Updated 6 years ago
- ☆12Dec 14, 2016Updated 9 years ago