A fast and efficient subdomain hijacking scanner that checks for takeover vulnerabilities by matching HTTP response bodies against predefined service fingerprints.
☆31Apr 12, 2026Updated 3 months ago
Alternatives and similar repositories for subhijack
Users that are interested in subhijack are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A powerful subdomain enumeration tool that aggregates data from multiple sources to create comprehensive lists of root subdomains.☆51May 2, 2026Updated 2 months ago
- ☆18Feb 7, 2026Updated 5 months ago
- IP Finder tool, ipfinder collects IP addresses from Shodan search queries.☆17Dec 12, 2025Updated 7 months ago
- vulntechfinder is a powerful security tool that automates vulnerability scanning based on technology stack detection. It intelligently pr…☆16Apr 12, 2026Updated 3 months ago
- Simple XSS vulnerability checker tool very useful with xsschecker.☆28Nov 21, 2025Updated 8 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Writeup Template. Feel free to replicate but please give me credit!☆13Nov 7, 2025Updated 8 months ago
- XSSRecon automates the process of testing URL parameters for reflection of a test payload rix4uni and further checks how special characte…☆54Jun 26, 2026Updated 3 weeks ago
- A powerful command-line interface for interacting with the [RapidDNS API](https://rapiddns.io/help/api). This tool allows you to perform …☆35Feb 22, 2026Updated 4 months ago
- ☆19Sep 1, 2025Updated 10 months ago
- AI exploit simulation and continuous security pipeline for LLM apps and AI agents☆16Mar 16, 2026Updated 4 months ago
- A powerful Go tool for finding origin IPs of domains by querying multiple security APIs and validating results with built-in HTTP client.☆48Dec 4, 2025Updated 7 months ago
- NeXSS is a modern, self-hosted Blind XSS (Cross-Site Scripting) hunter and callback listener built with Next.js. It helps security resear…☆34Jan 14, 2026Updated 6 months ago
- ☆31Jun 26, 2026Updated 3 weeks ago
- ☆16Updated this week
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- ☆16Jun 26, 2025Updated last year
- ☆51Apr 30, 2026Updated 2 months ago
- ☆38May 9, 2026Updated 2 months ago
- A powerful Burp Suite extension that automatically detects JavaScript URLs from HTTP traffic, scans them using TruffleHog for secrets det…☆32Oct 23, 2025Updated 8 months ago
- all-in-one subdomain enumeration and reconnaissance tool designed for modern cybersecurity professionals, penetration testers, and securi…☆21Jul 10, 2026Updated last week
- Extensión de Burp Suite que incorpora detección pasiva de vulnerabilidades mediante inteligencia artificial.☆17Jun 27, 2026Updated 3 weeks ago
- ExecEvasion is a lightweight execution-evasion toolkit that generates command variants designed to bypass naive filters and WAF rules by …☆55Jan 31, 2026Updated 5 months ago
- MCP server + REST API para validacao de CPFs e consulta ao TRT3 com solver de CAPTCHA CRNN☆19Apr 27, 2026Updated 2 months ago
- Free BugBounty KrazePlanetTraining☆58Dec 17, 2025Updated 7 months ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Automating Bug Bounty with n8n☆22Aug 25, 2025Updated 10 months ago
- ☆20Apr 27, 2026Updated 2 months ago
- Go static taint-analysis engine that finds vulnerabilities in WordPress plugins — WordPress-aware (capability tiers, nonce≠authz, REST/AJ…☆20Jun 6, 2026Updated last month
- Auto Frida is a powerful, all-in-one automation toolkit that handles everything from Frida installation to script injection. Zero manual …☆133Apr 15, 2026Updated 3 months ago
- gosqli is a fast and simple tool for detecting blind SQL injection vulnerabilities. It supports scanning URLs with custom payloads, paral…☆19Jun 22, 2026Updated 3 weeks ago
- Webarchive is a Go package for pentesters and developers to interacting with the Wayback Machine's CDX API and integrate web archive util…☆11Feb 25, 2024Updated 2 years ago
- SelfHosted - Bug Bounty Programs | Discover new and fresh bug bounty programs across platforms. Updated frequently to always display the …☆16Nov 24, 2025Updated 7 months ago
- Burp Suite extension that enhances Burp Active Scan by adding template engine specific SSTI payloads.☆28Feb 20, 2024Updated 2 years ago
- Generate Claude Code bug bounty skills from public HackerOne reports and GitHub writeups — 18 vuln classes, no private reports needed☆204Mar 12, 2026Updated 4 months ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- GarudRecon automates domain recon with top open-source tools to discover assets, enumerate subdomains, and detect XSS, SQLi, LFI, RCE & m…☆263Mar 28, 2026Updated 3 months ago
- Scrape all wordpress plugins (updates every 6 hour)☆25Updated this week
- PenTest and BugBounty 🕵️☆15Jul 11, 2026Updated last week
- subfalcon is a subdomain enumeration tool that allows you to discover and monitor subdomains for a given list of domains or a single doma…☆54Dec 9, 2024Updated last year
- Herramienta avanzada de escaneo XSS (Cross-Site Scripting) para auditorías de seguridad web, con capacidades de evasión de WAF y generaci…☆103Jan 7, 2026Updated 6 months ago
- An advanced Out-of-Band and In-Band SSRF fuzzing scanner with dynamic request tracking.☆37Jun 18, 2026Updated last month
- 🔍 erroreyes – Lightweight Subdomain Enumeration Tool A Python-based tool that queries crt.sh certificate logs to discover subdomains ass…☆17May 8, 2025Updated last year