WRecon, is a tool for the recognition of vulnerabilities and blackbox information for wordpress.
☆24Jun 5, 2026Updated 4 months ago
Alternatives and similar repositories for wprecon
Users that are interested in wprecon are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- automated web assets enumeration & scanning [DEPRECATED]☆289Mar 7, 2023Updated 3 years ago
- A simple tool to check subdomains for clickjacking attack.☆12Mar 30, 2021Updated 5 years ago
- 🦁 Python project to identify and scan for vulnerabilities related to the Joomla CMS project. It scans for common misconfigurations and p…☆177Apr 10, 2026Updated 5 months ago
- DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it☆453Jan 9, 2024Updated 2 years ago
- Erebus is a fast tool for parameter-based vulnerability scanning using a Yaml based template engine like nuclei.☆133Jul 11, 2021Updated 5 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- PoC for the CVE-2021-4034 vulnerability, affecting polkit < 0.120.☆24Jan 26, 2022Updated 4 years ago
- Automation Recon tool which works with Large & Medium scopes. It performs a lot of tasks and gets back all the results in separated files…☆686Jul 15, 2024Updated 2 years ago
- SMB Auto Relay provides the automation of SMB/NTLM Relay technique for pentesting and red teaming exercises in active directory environme…☆46Dec 20, 2020Updated 5 years ago
- An automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirects☆967Dec 8, 2021Updated 4 years ago
- An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters and…☆809May 11, 2026Updated 4 months ago
- This is a burp plugin that extracts keywords from response using regexes and test for reflected XSS on the target scope.☆75Nov 5, 2020Updated 5 years ago
- Vajra is a highly customizable target and scope based automated web hacking framework to automate boring recon tasks and same scans for m…☆702Oct 29, 2021Updated 4 years ago
- Vaf is a cross-platform very advanced and fast web fuzzer written in nim☆318May 29, 2022Updated 4 years ago
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆295Sep 22, 2024Updated 2 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- User-Agent , X-Forwarded-For and Referer SQLI Fuzzer☆387May 19, 2023Updated 3 years ago
- ☆298Jul 16, 2022Updated 4 years ago
- Wraps projectdiscovery's cdncheck library to exclude CDN hosts from input passed over stdin☆45Mar 13, 2023Updated 3 years ago
- Tool to start a python http server in a simple way☆11Mar 30, 2022Updated 4 years ago
- BugBounty , sort and delete duplicates param value without missing original value☆22Jul 31, 2021Updated 5 years ago
- Heuristic Vulnerable Parameter Scanner☆602Jan 8, 2024Updated 2 years ago
- Smart context-based SSRF vulnerability scanner.☆364May 5, 2022Updated 4 years ago
- Directory/Subdomain scanner developed in GoLang.☆48Dec 5, 2020Updated 5 years ago
- Automating XSS using Bash☆361Jan 27, 2026Updated 8 months ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Electron JS Browser To Find XSS Vulnerabilities Automatically☆747Mar 30, 2021Updated 5 years ago
- Offensive Security recon tool☆92Aug 27, 2021Updated 5 years ago
- mx-takeover focuses DNS MX records and detects misconfigured MX records.☆362Jul 17, 2023Updated 3 years ago
- Host Header Injection Checker☆86Mar 2, 2022Updated 4 years ago
- Bugbounty scope tool☆331Mar 5, 2025Updated last year
- Cross Origin Resource Sharing MisConfiguration Scanner☆173Nov 17, 2021Updated 4 years ago
- 😹 Python project to bruteforce Apache Tomcat manager login with known-default credentials☆96Mar 12, 2024Updated 2 years ago
- Automation for javascript recon in bug bounty.☆1,110Sep 9, 2023Updated 3 years ago
- A tool to perform permutations, mutations and alteration of subdomains in golang.☆160Sep 7, 2026Updated last month
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A fast tool to scan client-side prototype pollution vulnerability written in Rust. 🦀☆675Aug 28, 2025Updated last year
- jsubfinder searches webpages for javascript & analyzes them for hidden subdomains and secrets (wip).☆283Jan 15, 2025Updated last year
- pugrecon is a bash script for automatic recon of common vulnerabilities, misconfigurations and files on domains.☆26Mar 18, 2021Updated 5 years ago
- Making Favicon.ico based Recon Great again !☆1,314Aug 29, 2023Updated 3 years ago
- Burn Byte is a modern and powerful DDOS Toolkit☆35Jun 9, 2021Updated 5 years ago
- FestIn - Credentialless discovery and monitoring of exposed S3-compatible cloud storage from domains, DNS and web crawling.☆232Sep 8, 2026Updated last month
- 🕵️ Python project to crawl for JavaScript files and search for secrets like API keys, authorization tokens, hardcoded credentials, etc.☆438Apr 10, 2026Updated 5 months ago