raverrr / plutionLinks
Prototype pollution scanner using headless chrome
☆219Updated 3 years ago
Alternatives and similar repositories for plution
Users that are interested in plution are comparing it to the libraries listed below
Sorting:
- A reverse whois tool based on Whoxy API.☆168Updated last year
- Prototype Pollution Scanner☆129Updated 4 years ago
- A replacement of "qsreplace", accepts URLs as standard input, replaces all query string values with user-supplied values and stdout.☆109Updated 3 years ago
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆297Updated last year
- ☆173Updated 3 weeks ago
- The scripts I write to help me on my bug bounty hunting☆123Updated 3 years ago
- Check AWS S3 instances for read/write/delete access☆122Updated 3 years ago
- ☆157Updated 2 years ago
- List of fresh DNS resolvers updated daily☆108Updated 2 years ago
- xss development frameworks, with the goal of making payload writing easier.☆153Updated last year
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆325Updated 5 months ago
- Advanced Reconnaissance and Web Application Discovery☆88Updated 3 years ago
- Filter and enrich a list of subdomains by level☆210Updated 2 years ago
- A projectdiscovery driven attack surface monitoring bot powered by axiom☆191Updated 3 years ago
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.☆199Updated last year
- A blazing fast & feature rich Amazon S3 bucket enumerator.☆98Updated 3 years ago
- ☆154Updated 2 years ago
- ☆67Updated 3 years ago
- Build your own reconnaissance system with Osmedeus Next Generation☆199Updated 4 months ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆132Updated 4 years ago
- Identify virtual hosts by similarity comparison☆133Updated last year
- Get related domains / subdomains by looking at Google Analytics IDs☆248Updated 3 years ago
- Dotmil subdomain discovery tool that scrapes domains from official DoD website directories and certificate transparency logs☆97Updated 4 years ago
- ☆149Updated 2 years ago
- The project aims at creating target-specific wordlists for any web application that you are testing.☆66Updated 3 years ago
- 🔭 Collection of regexp pattern for security passive scanning☆115Updated 2 years ago
- Customisable and automated HTTP header injection☆271Updated last year
- Distribute ordinary bash commands over many systems☆167Updated 3 years ago
- Fast tool to extract all subdomains from crt.sh website. Output will be up to sub.sub.sub.subdomain.com with standard and advanced search…☆115Updated 4 years ago
- Monitoring framework to detect and report newly found subdomains on a specific target using various scanning tools☆281Updated last year