nielsing / yar
Yar is a tool for plunderin' organizations, users and/or repositories.
☆238Updated 4 years ago
Alternatives and similar repositories for yar
Users that are interested in yar are comparing it to the libraries listed below
Sorting:
- A tool for identifying misconfigured CloudFront domains☆356Updated 4 years ago
- Search exposed EBS volumes for secrets☆298Updated 2 years ago
- Find cloud assets that no one wants exposed 🔎 ☁️☆344Updated 4 years ago
- Fast and stealthy Amazon S3 bucket enumeration tool for pentesters.☆246Updated this week
- Uncover forgotten secrets and bring them back to life, haunting security and operations teams.☆207Updated 2 years ago
- barq: The AWS Cloud Post Exploitation framework!☆386Updated 2 years ago
- Benchmarking repo for secrets scanning☆231Updated 9 months ago
- secretz, minimizing the large attack surface of Travis CI☆325Updated 2 years ago
- A tool to enumerate S3 buckets manually or via certstream☆82Updated 2 years ago
- A tool for automatically gathering sensitive information from exposed Jenkins servers☆103Updated 2 years ago
- Monitors Github for leaked secrets☆198Updated 6 months ago
- AWS S3 Bucket/Object Finder☆119Updated 3 years ago
- an asynchronous target enumeration tool☆244Updated 2 years ago
- Monitoring GitHub for sensitive data shared publicly☆66Updated 3 years ago
- A simple file-based scanner to look for potential AWS access and secret keys in files☆91Updated last year
- FestIn - Open S3 Bucket Scanner☆234Updated 4 years ago
- Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Applica…☆480Updated 6 years ago
- ReconJSON is a project dedicated to creating a flexible and consistent JSON format across popular recon tools.☆102Updated 6 years ago
- These are the regexes that power truffleHog☆218Updated 2 years ago
- ☆125Updated 5 years ago
- ☆276Updated 3 years ago
- A tool designed to assist with finding all sinks and sources of a web application and display these results in a digestible manner.☆560Updated 2 years ago
- A simple HTTP(S) and DNS Canary bot with Slack/Discord/MS Teams/Lark/Telegram & Pushover support☆295Updated 3 weeks ago
- A scripted pipeline of tools to streamline the bug bounty/penetration test reconnaissance phase, so you can focus on chomping bugs.☆396Updated 5 years ago
- A security testing Slackbot built with a Kubernetes backend on the Google Cloud Platform☆166Updated 8 months ago
- Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆76Updated 3 years ago
- A collection of useful Serverless functions I use when pentesting☆385Updated 2 years ago
- Declarative penetration testing orchestration framework☆292Updated 5 years ago
- Google Cloud Platform Security Tool☆234Updated 5 years ago
- rapid content discovery tool for recursively querying webservers, handy in pentesting and web application assessments☆246Updated 5 years ago