rix4uni / scope
An automated GitHub Actions-based crawler that fetches and updates public scopes from popular bug bounty platforms (like Hackerone/Bugcrowd/Intigriti/etc) (updates every 10 minutes)
☆33Updated this week
Alternatives and similar repositories for scope:
Users that are interested in scope are comparing it to the libraries listed below
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a p…☆30Updated 3 months ago
- Additional active scan checks for BURP☆27Updated 6 months ago
- Burp Suite extension for bypassing client-side encryption for pentesting and bug bounty in WebSocket☆73Updated 2 months ago
- Create tar/zip archives that try to exploit zipslip vulnerability.☆47Updated 7 months ago
- AssetViz simplifies the visualization of subdomains from input files, presenting them as a coherent mind map. Ideal for penetration test…☆32Updated last year
- Bounty Prompt is an Open-Source Burp Suite extension by Bounty Security that leverages advanced AI via Burp AI and Groq AI. It enables us…☆92Updated 2 months ago
- Burp Suite extension for testing Passkey systems.☆67Updated 3 weeks ago
- ☆34Updated 8 months ago
- A collection of Turbo Intruder scripts.☆58Updated 2 months ago
- ☠️ Code for the Defcon Workshop☆23Updated 8 months ago
- TruffleHog Explorer, a user-friendly web-based tool to visualize and analyze data extracted using TruffleHog.☆19Updated 3 months ago
- FrogPost: postMessage Security Testing Tool☆55Updated this week
- SprayShark is a modular G-Suite password sprayer with threading!☆36Updated last week
- A recon tool that uses ML to predict subdomains. Then returns those that resolve.☆79Updated this week
- AWS IAM Username Enumerator and Password Spraying Tool in Python3☆80Updated this week
- Hijack a slack bot to phish your way in☆55Updated 2 weeks ago
- A tech enumeration toolkit focused on 404 Not found pages.☆25Updated 6 months ago
- Autonomous AI C2☆30Updated 9 months ago
- ☆37Updated 8 months ago
- AuditForge is a pentest reporting application making it simple and easy to write your findings and generate a customizable report.☆69Updated last week
- Passive Web Vulnerability Detection Tool☆31Updated 3 months ago
- Advanced test for proxy & waf☆13Updated 7 months ago
- moniorg is a tool that leverages crt.sh website to monitor domains of a target☆47Updated 2 years ago
- ☆34Updated 4 months ago
- Manage attack surface data on Elasticsearch☆22Updated last year
- Nuclei plugins to audit Chrome extensions☆64Updated 9 months ago
- yataf extracts secrets and paths from files or urls - its best used against javascript files☆52Updated 7 months ago
- Dump paths & pages from Next.js Manifest☆14Updated last year
- Zzl is a reconnaissance tool that collects subdomains from SSL certificates in IP ranges☆39Updated 5 months ago
- jxscout superpowers JavaScript analysis for security researchers☆84Updated this week