righettod / website-passive-reconnaissance
Script to automate, when possible, the passive reconnaissance performed on a website prior to an assessment.
☆37Updated 2 weeks ago
Alternatives and similar repositories for website-passive-reconnaissance:
Users that are interested in website-passive-reconnaissance are comparing it to the libraries listed below
- Checks whether a domain is hosted on a cloud service such as AWS, Azure or CloudFlare☆58Updated 2 years ago
- ☆52Updated 2 years ago
- A simple tool which makes creating nuclei templates even easier.☆36Updated 7 months ago
- ☆53Updated 9 months ago
- A "Spring4Shell" vulnerability scanner.☆50Updated 3 weeks ago
- Burp Extension for BFAC (Advanced Backup-File Artifacts Testing for Web-Applications)☆20Updated 3 years ago
- Script for Bug Bounty☆28Updated 3 years ago
- Simple bash Script to automate initial recon using (httpx, puredns, regulator, wayback, katana, aquatone)☆35Updated 2 years ago
- This repository has workflows created for https://github.com/RikunjSindhwad/Task-Ninja☆24Updated 6 months ago
- XSS Finder Via SSTI☆54Updated last year
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆49Updated 2 years ago
- 🚀 Sling Shot R3con: Automate Your Bug Bounty and Pentest Reconnaissance with Project Discovery tools 🎯☆24Updated last year
- An automated, reliable scanner for the Log4Shell (CVE-2021-44228) vulnerability.☆43Updated 3 weeks ago
- DNS resolution tracing tool☆34Updated 3 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆58Updated 3 years ago
- Bugbounty utility to store list of enumerated subdomains into an sqlite3 db [one liner style / Pipe and save]☆28Updated 4 years ago
- A solid recon tool I use personally.☆30Updated last year
- Related subdomains finder☆29Updated 2 years ago
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆39Updated 2 years ago
- F5 BIG-IP Scanner scans for servers on shodan and checks to see if they are vulnerable.☆17Updated 2 years ago
- your bestfried for finding LinkedIn Employees on github☆16Updated last year
- ElasticSearch exploit and Pentesting guide for penetration tester☆24Updated 2 years ago
- Checks if files is accessible based on the source code.☆16Updated 11 months ago
- ParamFirstCheck identifies in a list of urls those containing a parameter of the top 25 of the most vulnerable parameters for SQLi, LFI, …☆32Updated last year
- Tool for fetching all the available waybackmachine snapshot urls☆20Updated 4 months ago
- A collection of one off hacks and simple scripts☆28Updated last year
- A simple automation tool to detect lfi, rce and ssti vulnerability☆55Updated 3 years ago
- ☆48Updated 3 years ago
- Damn Vulnerable PHP Application (DVPA) - It is Lab Written in The PHP lang, Which Contains PHP Type Juggling - RCE Challenges☆32Updated 2 years ago
- A python3 script searching for secret on swaggerhub☆60Updated 2 years ago