Docker toolbox for pentest of web based application.
☆178Mar 5, 2026Updated this week
Alternatives and similar repositories for toolbox-pentest-web
Users that are interested in toolbox-pentest-web are comparing it to the libraries listed below
Sorting:
- Custom scripts for the PIPER Burp extensions.☆97Sep 24, 2023Updated 2 years ago
- Script to automate, when possible, the passive reconnaissance performed on a website prior to an assessment.☆38Jan 2, 2026Updated 2 months ago
- Automated Web Recon Shell Scripts☆53Dec 6, 2021Updated 4 years ago
- A Collection of Proof of Concepts for non-published Web Exploits and Common CVEs☆10Nov 29, 2020Updated 5 years ago
- A bash script that automates the scanning of a target network for HTTP resources through XXE☆37Dec 2, 2020Updated 5 years ago
- A tool to bruteforce nameservers when working with subdomain delegations to AWS.☆58Aug 22, 2019Updated 6 years ago
- Load your data into burp☆11Apr 26, 2023Updated 2 years ago
- BugBounty , sort and delete duplicates param value without missing original value☆22Jul 31, 2021Updated 4 years ago
- ☆25Jun 15, 2025Updated 8 months ago
- #JavascriptRecon #bugbounty☆21Aug 18, 2021Updated 4 years ago
- CVE-2022-30780 - lighttpd remote denial of service☆17Mar 16, 2024Updated last year
- ☆12Dec 26, 2021Updated 4 years ago
- This extension provides a central location for viewing all GraphQL requests/responses within a Burp project. It provides a clean UI that …☆15Feb 24, 2022Updated 4 years ago
- A framework built on top of Burp's Python Scripter extension.☆90Dec 28, 2023Updated 2 years ago
- A miscellany of thoughts.☆49Mar 31, 2024Updated last year
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆176Oct 26, 2024Updated last year
- ☆29Jan 15, 2017Updated 9 years ago
- Top level domain scanner in Go☆30Sep 24, 2023Updated 2 years ago
- Framework to automate Bug Bounty Reconnaissance☆43Jan 4, 2021Updated 5 years ago
- A tool for testing subdomain takeover possibilities at a mass scale.☆50May 23, 2021Updated 4 years ago
- Find subdomains by searching public certificate records☆16Jun 11, 2024Updated last year
- Chrome extension to aid in finding DOMXSS by simple taint analysis of string values.☆80Jun 1, 2019Updated 6 years ago
- My Tools For Bug Bounty☆69Sep 23, 2024Updated last year
- Fuzz WebSockets with custom Python code☆20Aug 21, 2024Updated last year
- ☆756Jun 26, 2024Updated last year
- Performing automated scan using Burp Suite Pro & Vmware Burp Rest API☆52Sep 30, 2022Updated 3 years ago
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆72Mar 12, 2022Updated 3 years ago
- Tool to find stored robots.txt files from the past☆19Jun 4, 2023Updated 2 years ago
- This tool aims at accumulating javascript files from a given set of subdomains to discover hidden endpoints. It swims through JS files to…☆70Dec 28, 2022Updated 3 years ago
- 0x0p1n3r is set of combination of other tools and one line scripts to find subdomains easily and to check subdomain takeover☆57Dec 15, 2020Updated 5 years ago
- Deploy a Private Burpsuite Collaborator using boto3 Python Library☆57Feb 20, 2020Updated 6 years ago
- Malware detonation platform Polygon integration☆10Aug 1, 2023Updated 2 years ago
- A curated list of awesome Penetration Testing Tools ported to Google Colab to make faster and easier to execute and test.☆38Oct 31, 2024Updated last year
- A research project to add some brrrrrr to Burp☆207Feb 16, 2026Updated 2 weeks ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆59Sep 6, 2021Updated 4 years ago
- A Burp Suite plugin/extension that offers a shell in Burp. Both useful for OS Command injection and LFI exploration☆78Sep 11, 2020Updated 5 years ago
- An Automated Subdomain Enumeration Tool☆293Oct 16, 2024Updated last year
- A OWASP Based Checklist With 80+ Test Cases☆156Oct 26, 2022Updated 3 years ago
- Post-exploitation tool collects data going out and coming into the browser and makes use of it.☆23Apr 22, 2022Updated 3 years ago