mlcsec / headi
Customisable and automated HTTP header injection
☆244Updated 8 months ago
Alternatives and similar repositories for headi:
Users that are interested in headi are comparing it to the libraries listed below
- A reverse whois tool based on Whoxy API.☆164Updated 11 months ago
- Blind XSS Scanner is a tool that can be used to scan for blind XSS vulnerabilities in web applications.☆283Updated this week
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆293Updated 6 months ago
- Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations☆352Updated 4 years ago
- Secret and/or credential patterns used for gf.☆240Updated 2 years ago
- List of reporting templates I have used since I started doing BBH.☆285Updated 6 months ago
- ☆287Updated 2 years ago
- Automated tool for domains & subdomains gathering☆184Updated last year
- Prototype pollution scanner using headless chrome☆216Updated 2 years ago
- Turns any junk text into a usable wordlist for brute-forcing.☆219Updated last year
- Finding XSS during recon☆255Updated 2 years ago
- List of fresh DNS resolvers updated daily☆109Updated 2 years ago
- A bash script that will automatically install Bug Hunting tools used for recon☆174Updated last year
- Automating XSS using Bash☆353Updated last year
- Monitoring framework to detect and report newly found subdomains on a specific target using various scanning tools☆272Updated 8 months ago
- Burp extension to create target specific and tailored wordlist from burp history.☆237Updated 3 years ago
- ☆156Updated last year
- Burp Extension for easily creating Wordlists☆211Updated 3 years ago
- ☆151Updated last year
- DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it☆449Updated last year
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆306Updated 4 months ago
- A replacement of "qsreplace", accepts URLs as standard input, replaces all query string values with user-supplied values and stdout.☆104Updated 3 years ago
- Js File Scanner☆167Updated 3 years ago
- Gotator is a tool to generate DNS wordlists through permutations.☆466Updated 2 years ago
- Full Nuclei automation script with logic explanation.☆243Updated 2 years ago
- Random utilities from my security projects that might be useful to others☆179Updated last month
- A fast and minimal JS endpoint extractor☆342Updated 4 months ago
- IIS shortname scanner written in Go☆323Updated last year
- ☆126Updated 4 years ago
- Quickly generate context-specific wordlists for content discovery from lists of URLs or paths☆220Updated 2 years ago