michelin / ChopChop
ChopChop is a CLI to help developers scanning endpoints and identifying exposition of sensitive services/files/folders.
☆684Updated last year
Alternatives and similar repositories for ChopChop:
Users that are interested in ChopChop are comparing it to the libraries listed below
- Awesome cloud enumerator☆956Updated 6 months ago
- Cloudlist is a tool for listing Assets from multiple Cloud Providers.☆903Updated this week
- 🔑 Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials.☆412Updated 3 months ago
- A fully automated, reliable, super-fast, mass scanning and validation toolkit for the Log4J RCE CVE-2021-44228 vulnerability.☆398Updated 2 months ago
- Vulnerability assessment and penetration testing automation and reporting platform for teams.☆442Updated 2 months ago
- Web Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning. It is developed by Hackmanit GmbH (http://hac…☆928Updated last month
- Golang client for querying SecurityTrails API data☆545Updated last year
- Private key usage verification☆424Updated 2 months ago
- PwnMachine is a self hosting solution based on docker aiming to provide an easy to use pwning station for bug hunters.☆313Updated 6 months ago
- My subdomain enumeration script. It's unique in the way it is built upon.☆675Updated 6 months ago
- Go client to communicate with Chaos DB API.☆682Updated this week
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆501Updated 2 years ago
- Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!☆857Updated last year
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆265Updated last year
- PwnFox is a Firefox/Burp extension that provide usefull tools for your security audit.☆1,109Updated 6 months ago
- PeTeReport is an open-source application vulnerability reporting tool.☆488Updated 8 months ago
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆622Updated 3 months ago
- An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters and…☆782Updated last year
- Extract URLs, paths, secrets, and other interesting bits from JavaScript☆1,486Updated 8 months ago
- An automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirects☆953Updated 3 years ago
- A rapid API for the Project Sonar dataset☆642Updated last year
- Convolutional neural network for analyzing pentest screenshots☆1,072Updated last year
- Scrape domain names from SSL certificates of arbitrary hosts☆631Updated 10 months ago
- Escalate your SSRF vulnerabilities on Modern Cloud Environments. `surf` allows you to filter a list of hosts, returning a list of viable …☆622Updated last year
- MassDNS wrapper written in go to enumerate valid subdomains using active bruteforce as well as resolve subdomains with wildcard filtering…☆1,375Updated this week
- Open Redirection Analyzer☆763Updated last year
- Identify privilege escalation paths within and across different clouds☆680Updated 3 months ago
- VULNRΞPO - Free vulnerability report generator and repository, end-to-end encrypted! Templates of issues, CWE,CVE,MITRE ATT&CK,PCI DSS, i…☆459Updated last week
- Takes a list of URLs and returns their HTTP response codes☆391Updated last year
- Imperva's customizable API attack tool takes an API specification as an input, generates and runs attacks that are based on it as an outp…☆467Updated last year