pikpikcu / XRCross
XRCross is a Reconstruction, Scanner, and a tool for penetration / BugBounty testing. This tool was built to test (XSS|SSRF|CORS|SSTI|IDOR|RCE|LFI|SQLI) vulnerabilities
☆335Updated last year
Alternatives and similar repositories for XRCross:
Users that are interested in XRCross are comparing it to the libraries listed below
- information gathering☆273Updated 11 months ago
- Automating XSS using Bash☆353Updated last year
- A tool to check a bunch of URLs that contain reflecting params.☆564Updated 7 months ago
- Heuristic Vulnerable Parameter Scanner☆583Updated last year
- A fuzzer for detecting open redirect vulnerabilities☆731Updated 8 months ago
- ☆372Updated 3 years ago
- An automated approach to performing recon for bug bounty hunting and penetration testing.☆440Updated 4 years ago
- 🚀 A DNS automated scanner and tool 🖱️ (Zone Transfer, DNS Zone Takeover, Subdomain Takeover).☆294Updated 5 months ago
- Web App bug hunting☆561Updated 2 weeks ago
- Poor (rich?) man's bug bounty pipeline https://dubell.io☆274Updated last year
- ReconNess is a platform to allow continuous recon (CR) where you can set up a pipeline of #recon tools (Agents) and trigger it base on sc…☆318Updated 2 weeks ago
- Web Application Security Automation Framework which recons the target for various assets to maximize the attack surface for security prof…☆413Updated 4 years ago
- BugBountyTips☆405Updated 9 months ago
- Blind XSS Scanner is a tool that can be used to scan for blind XSS vulnerabilities in web applications.☆286Updated last week
- An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters and…☆783Updated last year
- Open Redirection Analyzer☆768Updated 2 years ago
- A fast DOM based XSS vulnerability scanner with simplicity.☆787Updated 2 years ago
- Tool to find JavaScript files on Websites☆522Updated last year
- Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations☆352Updated 4 years ago
- Automation for javascript recon in bug bounty.☆968Updated last year
- A DNS Bruteforcing Wordlist Generator☆357Updated 2 years ago
- Simple shell script for automated domain recognition with some tools☆299Updated 4 years ago
- My personal bug bounty toolkit.☆164Updated 9 months ago
- Secret and/or credential patterns used for gf.☆240Updated 2 years ago
- Python library and CLI for the Bug Bounty Recon API☆223Updated 3 years ago
- Random utilities from my security projects that might be useful to others☆179Updated last month
- Takes a list of URLs and returns their HTTP response codes☆392Updated last year
- Customisable and automated HTTP header injection☆243Updated 8 months ago
- Accept URLs on stdin, replace all query string values with a user-supplied value☆800Updated 2 years ago
- Open Redirect Payloads☆603Updated 5 months ago