osamahamad / Sensitive-Data-Exposures-with-GithubLinks
Techniques / Tips and tricks for finding sensitive data exposures in Github for Penetration Testers / Bug Bounty Hunters
☆17Updated 4 years ago
Alternatives and similar repositories for Sensitive-Data-Exposures-with-Github
Users that are interested in Sensitive-Data-Exposures-with-Github are comparing it to the libraries listed below
Sorting:
- offy is a tool for bugbounty hunters to save money in their EC2 instances☆13Updated 2 years ago
- ☆10Updated 2 years ago
- Blind spot is a python tool for blind injection vulnerabilities , SQLi time based , Command injection , code injection , SSTI☆27Updated 4 years ago
- A repo for tools, utils, and wrappers that are to small to put in their own repo.☆23Updated 2 years ago
- collection of various grep patterns collected from tomnomnom/gf and other places☆22Updated 4 years ago
- JsValidator is a tool created for validating the JS files after crawlling it from waybackurls☆20Updated 2 years ago
- Enhanced 403 bypass header☆21Updated 2 years ago
- Oneliners curated from my experience and from the internet☆22Updated 4 years ago
- Quick tool to create custom wordlists like how fuzzers work☆10Updated last year
- Alternative to XSS Hunter for blind XSS.☆51Updated 2 years ago
- gup aka Get All Urls parameters to create wordlists for brute forcing parameters.☆18Updated 3 years ago
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 4 years ago
- JSNotify is a Python script designed to monitor JavaScript files in a specified directory for changes. This tool can be used by developer…☆18Updated last year
- ☆21Updated 2 years ago
- All The Notes And Tips I FOund In Github And Twitter I Put Them Here☆35Updated 4 years ago
- Bug Bounty tool to automate the recon process.☆12Updated last year
- Cool HackerOne Reports☆22Updated 2 years ago
- In this repo, I have created a subdomain enumeration function that grab subdomains in deep.☆22Updated 2 years ago
- ☆42Updated 4 years ago
- A simple utility to generate domain names with all possible TLDs☆23Updated 2 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆59Updated 3 years ago
- Some of the gf patterns which i use☆44Updated 3 years ago
- Passively check for XSS character encodings☆18Updated 2 years ago
- Framework to automate Bug Bounty Reconnaissance☆44Updated 4 years ago
- Generating Sub-Sub-Subdomain + validating all of them☆10Updated 2 years ago
- Automate bug bounty recon using bash alias☆14Updated 11 months ago
- XSS Finder Via SSTI☆56Updated last year
- Magic Header Blind Xss tool (deliver blind xss payloads in request headers).☆26Updated 4 years ago
- ☆14Updated 4 years ago
- List of custom Nuclei templates☆15Updated last year