mathis2001 / ParamFirstCheck
ParamFirstCheck identifies in a list of urls those containing a parameter of the top 25 of the most vulnerable parameters for SQLi, LFI, RCE and Open redirect
☆35Updated last year
Alternatives and similar repositories for ParamFirstCheck:
Users that are interested in ParamFirstCheck are comparing it to the libraries listed below
- A simple automation tool to detect lfi, rce and ssti vulnerability☆55Updated 3 years ago
- Run ffuf with the appropriate options to brute-force the directories using the awesome different wordlists.☆24Updated last year
- CVE-2024-24919 [Check Point Security Gateway Information Disclosure]☆31Updated 10 months ago
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆49Updated 2 years ago
- ☆29Updated 6 months ago
- XSS Finder Via SSTI☆54Updated last year
- ☆17Updated last year
- This tool allows you to find ssti vulnerability with ease!☆19Updated 2 years ago
- F5 BIG-IP Scanner scans for servers on shodan and checks to see if they are vulnerable.☆17Updated 2 years ago
- Host Header Vulnerability Scanner Automated Tool☆22Updated last year
- xsschecker tool checking reflected endpoints finding possible xss vulnerable endpoints.☆21Updated 5 months ago
- Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.☆44Updated last year
- ☆43Updated last year
- A proof of concept program that pulls and parses security.txt files at mass.☆28Updated last year
- Filter URLs to save your time.☆59Updated 2 years ago
- Tools for bug bounty☆27Updated last year
- Check if domain has bug bounty program or not☆27Updated last year
- A tool for Subdomain takeovers detection☆26Updated 2 years ago
- A solid recon tool I use personally.☆30Updated last year
- An offensive security tool used to enumerate and spray passwords for O365 accounts on both Managed and Federated AD services.☆48Updated 2 years ago
- My personal collection of nuclei templates made for fuzzing.☆27Updated 7 months ago
- "🔍 Subtron: Bash-driven subdomain seeker. Utilizes Subfinder, Amass, Assetfinder, and HTTPX to swiftly uncover live domains. Results sto…☆22Updated last year
- Oneliner Bug Bounty Collection collected from GitHub to all bug bounty hunters☆31Updated last year
- This Python script automates the process of identifying vulnerabilities in Firebase configurations extracted from APK files.☆31Updated 2 weeks ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆16Updated 4 years ago
- DNS resolution tracing tool☆34Updated 3 years ago
- 「💥」CVE-2022-33891 - Apache Spark Command Injection☆26Updated 2 years ago
- This repository has workflows created for https://github.com/RikunjSindhwad/Task-Ninja☆24Updated 8 months ago
- Python tool to test known techniques to bypass 403 and 401 HTTP responses.☆37Updated last year
- ☆18Updated 2 years ago