ParamFirstCheck identifies in a list of urls those containing a parameter of the top 25 of the most vulnerable parameters for SQLi, LFI, RCE and Open redirect
☆35Dec 13, 2023Updated 2 years ago
Alternatives and similar repositories for ParamFirstCheck
Users that are interested in ParamFirstCheck are comparing it to the libraries listed below
Sorting:
- Burp extension used to snip any header from all the requests.☆23Nov 12, 2023Updated 2 years ago
- ☆46Nov 5, 2025Updated 4 months ago
- Tool designed for fast crawl and extract endpoints☆16Apr 5, 2021Updated 4 years ago
- Filter URLs to save your time.☆60Jul 29, 2022Updated 3 years ago
- A simple automation tool to detect lfi, rce and ssti vulnerability☆56Feb 15, 2022Updated 4 years ago
- Repo for hosting rayder workflows☆63Aug 31, 2023Updated 2 years ago
- Windows Reverse TCP Shell for Hacking and Pentesting☆24Aug 13, 2024Updated last year
- Find sensitive information using dorks from different search-engines.☆93Oct 24, 2024Updated last year
- ☆11Aug 18, 2021Updated 4 years ago
- ☆40Jul 24, 2022Updated 3 years ago
- SAPLAR - LFI & Path Traversal Scanner☆15Mar 11, 2025Updated last year
- CVE-2022-32119 - Arox-Unrestricted-File-Upload☆17Dec 20, 2023Updated 2 years ago
- I collected it to help the bug hunter get a reward☆57Sep 7, 2022Updated 3 years ago
- Wounty is a simple web enumeration script that makes use of other popular tools to automate the early stages of recognition in Bug Bounty…☆14Feb 6, 2022Updated 4 years ago
- Ultimate Google Dork Lists OSWP top 10☆58Aug 6, 2024Updated last year
- redteamrecipe.com☆24Feb 9, 2024Updated 2 years ago
- ☆38Dec 10, 2023Updated 2 years ago
- Windows Stack Based Auto Buffer Overflow Exploiter☆21Feb 19, 2021Updated 5 years ago
- ☆16Oct 18, 2024Updated last year
- Learn 101 is a challenge to keep the learning spirit going on and challenge myself to learn something daily for 101 days.☆30Jun 7, 2022Updated 3 years ago
- Google Dorking Payloads☆12Jun 24, 2024Updated last year
- Fast AEM scope gathering tool for all your public and private BugCrowd Programs☆10Jul 14, 2021Updated 4 years ago
- Some oneliners with descriptions and Regex that I frequently use while doing bug hunting. More to come 🚀🚀☆22Dec 24, 2022Updated 3 years ago
- Custom Trickest Workflows☆12Oct 26, 2023Updated 2 years ago
- Make URL path combinations using a wordlist☆171Sep 25, 2023Updated 2 years ago
- ☆14Jun 30, 2022Updated 3 years ago
- ☆12Jun 22, 2022Updated 3 years ago
- XSS payloads for bypassing WAF. This repository is updating continuously.☆10Aug 8, 2021Updated 4 years ago
- Simple python OSINT tool for urls recon thanks to the waybackmachine.☆45Jun 19, 2023Updated 2 years ago
- ☆47Sep 20, 2024Updated last year
- Zimbra CVE-2022-37042 Nuclei weaponized template☆20Aug 29, 2022Updated 3 years ago
- The second version of SQL Hunter. SQLi Hunter is a URL (Blind) SQL injection checker for multiple pages.☆93Mar 4, 2023Updated 3 years ago
- WebSocket Penetration Testing Toolkit for Burp Suite☆28Mar 5, 2026Updated 2 weeks ago
- Simple passive Python Recon tool for subdomains enumeration with crt.sh☆25Jun 14, 2022Updated 3 years ago
- Updated Exploit - pfBlockerNG <= 2.1.4_26 Unauth RCE (CVE-2022-31814)☆23Jul 23, 2024Updated last year
- This Python tool enables network node command and exfiltration while applying OPSEC to ensure the process is hidden by transmitting comma…☆35Nov 29, 2023Updated 2 years ago
- ☆36Jun 23, 2022Updated 3 years ago
- port+dir+param bruteforcing at the same time using ffuf☆17Jul 27, 2024Updated last year
- Simple python script supported with BurpBouty profile that helps you to detect SQL injection "Error based" by sending multiple requests w…☆633Feb 22, 2026Updated 3 weeks ago