rix4uni / scope
An automated GitHub Actions-based crawler that fetches and updates public scopes from popular bug bounty platforms (like Hackerone/Bugcrowd/Intigriti/etc) (updates every 10 minutes)
☆39Updated this week
Alternatives and similar repositories for scope
Users that are interested in scope are comparing it to the libraries listed below
Sorting:
- A collection of Turbo Intruder scripts.☆59Updated 3 months ago
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a p…☆30Updated 4 months ago
- Burp Suite extension for testing Passkey systems.☆69Updated last month
- Burp Suite extension for bypassing client-side encryption for pentesting and bug bounty in WebSocket☆74Updated last week
- Additional active scan checks for BURP☆27Updated 7 months ago
- AssetViz simplifies the visualization of subdomains from input files, presenting them as a coherent mind map. Ideal for penetration test…☆32Updated last year
- TruffleHog Explorer, a user-friendly web-based tool to visualize and analyze data extracted using TruffleHog.☆39Updated 3 months ago
- ☠️ Code for the Defcon Workshop☆23Updated 9 months ago
- Bounty Prompt is an Open-Source Burp Suite extension by Bounty Security that leverages advanced AI via Burp AI and Groq AI. It enables us…☆92Updated 2 months ago
- AuditForge is a pentest reporting application making it simple and easy to write your findings and generate a customizable report.☆70Updated 2 weeks ago
- A utility for recursively traversing SSL/TLS certificates for collecting DNS names☆47Updated last year
- A recon tool that uses ML to predict subdomains. Then returns those that resolve.☆86Updated 3 weeks ago
- Nuclei plugins to audit Chrome extensions☆64Updated 10 months ago
- Create your own recon & vulnerability scanner with Trickest and GitHub☆49Updated last year
- CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).☆117Updated last month
- AI/LLM local model integration for analysis of reconftw results☆47Updated 2 weeks ago
- Chrome extension for automating CSPT discovery☆83Updated 3 weeks ago
- ☆34Updated 5 months ago
- Scans remote JavaScript files with Trufflehog + Semgrep to detect leaked secrets☆56Updated 3 months ago
- Finds graphql queries in javascript files☆61Updated 11 months ago
- SprayShark is a modular G-Suite password sprayer with threading!☆36Updated this week
- ai-based domain name generation☆91Updated 3 months ago
- The Arcanum Prompt Injection Taxonomy☆81Updated this week
- FrogPost: postMessage Security Testing Tool☆74Updated last week
- AWS IAM Username Enumerator and Password Spraying Tool in Python3☆82Updated 3 weeks ago
- moniorg is a tool that leverages crt.sh website to monitor domains of a target☆47Updated 2 years ago
- Passive Web Vulnerability Detection Tool☆33Updated last week
- yataf extracts secrets and paths from files or urls - its best used against javascript files☆52Updated 8 months ago
- Frogy 2.0 is an automated external reconnaissance and Attack Surface Management (ASM) toolkit☆96Updated last month
- ☆35Updated 9 months ago