pikpikcu / XRCrossLinks
XRCross is a Reconstruction, Scanner, and a tool for penetration / BugBounty testing. This tool was built to test (XSS|SSRF|CORS|SSTI|IDOR|RCE|LFI|SQLI) vulnerabilities
☆336Updated 2 years ago
Alternatives and similar repositories for XRCross
Users that are interested in XRCross are comparing it to the libraries listed below
Sorting:
- Heuristic Vulnerable Parameter Scanner☆592Updated last year
- A tool to check a bunch of URLs that contain reflecting params.☆579Updated 10 months ago
- information gathering☆279Updated last year
- Web App bug hunting☆567Updated 3 months ago
- Automating XSS using Bash☆355Updated last year
- ☆374Updated 3 years ago
- A fuzzer for detecting open redirect vulnerabilities☆762Updated 11 months ago
- Automation for javascript recon in bug bounty.☆1,006Updated last year
- Blind XSS Scanner is a tool that can be used to scan for blind XSS vulnerabilities in web applications.☆315Updated 3 weeks ago
- Automation Recon tool which works with Large & Medium scopes. It performs a lot of tasks and gets back all the results in separated files…☆682Updated 11 months ago
- ReconNess is a platform to allow continuous recon (CR) where you can set up a pipeline of #recon tools (Agents) and trigger it base on sc…☆320Updated 2 months ago
- An automated approach to performing recon for bug bounty hunting and penetration testing.☆443Updated 4 years ago
- ScanT3r - Module based Bug Bounty Automation Tool ( use Lotus instead github.com/bugBlocker/lotus )☆687Updated 2 weeks ago
- 🚀 A DNS automated scanner and tool 🖱️ (Zone Transfer, DNS Zone Takeover, Subdomain Takeover).☆298Updated 8 months ago
- Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations☆367Updated 5 years ago
- Open Redirection Analyzer☆788Updated 2 years ago
- Poor (rich?) man's bug bounty pipeline https://dubell.io☆274Updated 2 years ago
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆625Updated 7 months ago
- My personal bug bounty toolkit.☆164Updated last year
- An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters and…☆791Updated last year
- Tool to find JavaScript files on Websites☆517Updated last year
- Accept URLs on stdin, replace all query string values with a user-supplied value☆823Updated 2 years ago
- An automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirects☆962Updated 3 years ago
- BugBountyTips☆411Updated last month
- Fetches javascript file from a list of URLS or subdomains.☆776Updated 2 years ago
- Python tool to find potential Server Side Reqest Forgery (SSRF) vulnerability parameters.☆322Updated 2 weeks ago
- This a adaption of tomnomnom's kxss tool with a different output format☆475Updated last year
- Secret and/or credential patterns used for gf.☆240Updated 2 years ago
- a javascript change monitoring tool for bugbounties☆650Updated 10 months ago
- Python library and CLI for the Bug Bounty Recon API☆226Updated 4 years ago