Passive reconnaissance/enumeration of interesting targets by watching for SSL certificates being issued
☆68Oct 11, 2022Updated 3 years ago
Alternatives and similar repositories for Substr3am
Users that are interested in Substr3am are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A notification script to help with Recon Stuff☆14Jun 8, 2021Updated 5 years ago
- 🗺 Convert nmap XML output to beautiful JSON☆17Mar 17, 2023Updated 3 years ago
- This extension provides a central location for viewing all GraphQL requests/responses within a Burp project. It provides a clean UI that …☆16Feb 24, 2022Updated 4 years ago
- Reestructured LemonBooster.☆47Jul 26, 2024Updated 2 years ago
- A Web-UI for subdomain enumeration (subfinder)☆55Jun 5, 2020Updated 6 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- A bash script that automates the scanning of a target network for HTTP resources through XXE☆38Dec 2, 2020Updated 5 years ago
- Parallelized enumeration tool for red team engagements and bug bounty programs.☆16Mar 31, 2021Updated 5 years ago
- A simple script to check for insecurely exposed git repositories.☆12Mar 17, 2019Updated 7 years ago
- Subvenkon is a subdomain enumerator from Venkon☆22Jun 22, 2020Updated 6 years ago
- all manner of wordlists☆24Jan 19, 2022Updated 4 years ago
- Push notifications to Slack channel or to custom server based on BurpSuite response conditions.☆17Nov 26, 2020Updated 5 years ago
- 4xxbypass☆65Mar 29, 2021Updated 5 years ago
- An another JWT cracker but really fast!☆15Jan 26, 2023Updated 3 years ago
- Sometimes we want to fuzz a set of sub-domain URLs with a common wordlist. Fuzzing them one by one is a tedious task, not to mention the …☆53Jul 14, 2021Updated 5 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Customisable and automated HTTP header injection☆297Jun 27, 2024Updated 2 years ago
- 🐰 Managing command snippets for hackers/bug bounty hunters. with pet.☆113May 6, 2023Updated 3 years ago
- jaVasCript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=alert() )//%0D%0A%0d%0a//</stYle/</titLe/</teXtarEa/</scRipt/--!>\x3csVg/<sVg/oNloAd=alert()…☆11Apr 9, 2021Updated 5 years ago
- ☆17Feb 4, 2020Updated 6 years ago
- A Multi-Processing Tool for collecting and extracting information to an Excel file from a Burp Suite output file.☆10Apr 8, 2024Updated 2 years ago
- A simple tool to detect wildcards domain based on Amass's wildcards detector.☆64Apr 13, 2021Updated 5 years ago
- Built on a lazy Sunday after seeing this tweet (https://twitter.com/intigriti/status/1272145863868104705?s=20) I present to you, Paramete…☆51Jun 14, 2020Updated 6 years ago
- Command line tool for testing CRLF injection on a list of domains.☆162Apr 14, 2024Updated 2 years ago
- #JavascriptRecon #bugbounty☆21Aug 18, 2021Updated 5 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Mar 7, 2021Updated 5 years ago
- Security tool to find potential vulnerable Server Side Request Forgery (SSRF) parameters.☆364Feb 13, 2026Updated 6 months ago
- 0x0p1n3r is set of combination of other tools and one line scripts to find subdomains easily and to check subdomain takeover☆57Dec 15, 2020Updated 5 years ago
- Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl and Filter Urls With OpenRedirection or SS…☆175Nov 11, 2020Updated 5 years ago
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆300Feb 12, 2023Updated 3 years ago
- Bug Bounty tool to automate the recon process.☆12Oct 4, 2023Updated 2 years ago
- Python library and CLI for the Bug Bounty Recon API☆229Jul 3, 2026Updated 2 months ago
- automated web assets enumeration & scanning [DEPRECATED]☆288Mar 7, 2023Updated 3 years ago
- Generative web directory fuzzer,crawling and subdomain checker based on chatgpt☆15May 15, 2024Updated 2 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- A simple program to query nmap xml files in the terminal.☆28May 4, 2020Updated 6 years ago
- A Payload Injector for bugbounties written in go☆70Jul 18, 2020Updated 6 years ago
- Burp Suite plugin that adds additional checks to the passive scanner to reveal the origin IP(s) of Cloudflare-protected web applications.☆66Nov 29, 2022Updated 3 years ago
- leaking net-ntlm with webdav☆28Feb 23, 2021Updated 5 years ago
- Exploit for CVE-2021-27342 vulnerability (telnet authentication brute-force protection bypass)☆15May 15, 2021Updated 5 years ago
- Service-Now Article Bruteforcer☆16Jun 5, 2020Updated 6 years ago
- this tool take a list of subdomains and give you the ip for each☆20Oct 9, 2020Updated 5 years ago