mmarting / unwaf
Unwaf is a Go tool designed to help identify WAF bypasses using passive techniques, such as: SPF records and DNS history. By default, Unwaf will check SPF records.
☆90Updated 8 months ago
Alternatives and similar repositories for unwaf:
Users that are interested in unwaf are comparing it to the libraries listed below
- A passive way to find backups/ sensitive information.☆77Updated last week
- ParamScan is a chrome extension for finding reflected parameters in a webpage.☆77Updated 3 months ago
- Morgan is a powerful tool designed to help security researchers, developers, and security auditors identify sensitive information, vulner…☆54Updated 2 months ago
- A Powerful Recon Engine☆62Updated 4 months ago
- Grep subdomains from web pages.☆42Updated 2 months ago
- ☆119Updated last year
- IDOR Forge is an advanced and versatile tool designed to detect Insecure Direct Object Reference (IDOR) vulnerabilities in web applicatio…☆92Updated this week
- Zzl is a reconnaissance tool that collects subdomains from SSL certificates in IP ranges☆39Updated 5 months ago
- ☆78Updated last week
- Parse FFUF results in GUI with option to sort based by response code , size , keyword☆96Updated 7 months ago
- Advanced CORS Header Checker Tool with Vulnerability Detection and Bypass Attempts☆59Updated 6 months ago
- Blinks is a powerful Burp Suite extension that automates active scanning with Burp Suite Pro and enhances its functionality. With the int…☆115Updated 4 months ago
- ex-param is an automated tool designed for finding reflected parameters for XSS vulnerabilities. It crawls a target website, extracts GET…☆55Updated last month
- shef - extract/scrape IPs from shodan without any API key☆46Updated 3 months ago
- SubOwner - A Simple tool check for subdomain takeovers.☆111Updated 5 months ago
- A basic tool to check for XSS vulnerabilities. It takes a list of URLs and checks if the parameter values appear in the response.☆27Updated 8 months ago
- Dnsbruter is a powerful tool designed to perform active subdomain enumeration and discovery. It uses DNS resolution to efficiently brutef…☆111Updated 3 months ago
- ☆58Updated 4 months ago
- ☆46Updated last month
- 🪄 XSSDynaGen is a tool designed to analyze URLs with parameters, identify the characters allowed by the server, and generate advanced XS…☆51Updated 3 months ago
- ☆40Updated last month
- Private Nuclei Templates☆98Updated last month
- CVE-2024-32640 | Automated SQLi Exploitation PoC☆63Updated 10 months ago
- Frogy 2.0 is an automated external reconnaissance and Attack Surface Management (ASM) toolkit☆70Updated last week
- Gather results of dorks across a number of search engines☆104Updated 4 months ago
- Passive Web Vulnerability Detection Tool☆31Updated 3 months ago
- A powerful bash script for massive XSS scanning leveraging Brute Logic's KNOXSS API☆71Updated 2 months ago
- Automated Subdomain Enumeration and Scanning Tool☆113Updated last year
- Probuster : A Python based Web Application Penetration testing tool for Information Gathering⚡.☆59Updated 4 months ago
- Welcome SecToolkit repository! This is a comprehensive collection of cybersecurity and bug bounty hunting topics. Here, you'll find a var…☆35Updated last month