sdushantha / doraLinks
Find exposed API keys based on RegEx and get exploitation methods for some of keys that are found
☆336Updated 2 years ago
Alternatives and similar repositories for dora
Users that are interested in dora are comparing it to the libraries listed below
Sorting:
- Subdomain finder☆371Updated last year
- Jbin will gather all the URLs from the website and then it will try to expose the secret data from them such as API keys, API secrets, AP…☆172Updated 3 years ago
- Turns any junk text into a usable wordlist for brute-forcing.☆226Updated last year
- GraphQL automated security testing toolkit☆331Updated last year
- Automated Recon for Pentesting & Bug Bounty☆428Updated 2 weeks ago
- list of regex patterns for oauth / api tokens with provided source☆279Updated 10 months ago
- Get related domains / subdomains by looking at Google Analytics IDs☆248Updated 3 years ago
- Simple Google Dorks search tool☆306Updated 2 months ago
- mx-takeover focuses DNS MX records and detects misconfigured MX records.☆358Updated 2 years ago
- XSScope is one of the most powerful and advanced GUI Framework for Modern Browser exploitation via XSS.☆314Updated 3 years ago
- Weaponizing WaybackUrls for Recon, BugBounties , OSINT, Sensitive Endpoints and what not☆507Updated 2 weeks ago
- Fleex makes it easy to create multiple VPS on cloud providers and use them to distribute workloads.☆263Updated last year
- hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.☆452Updated 3 years ago
- Http request smuggling vulnerability scanner☆229Updated 3 years ago
- Now, the Host is Mine! - Super Fast Sub-domain Takeover Detection!☆382Updated 2 years ago
- Find subdomains with GPT, for free☆350Updated last year
- Golang client for querying SecurityTrails API data☆574Updated 2 years ago
- Use favicons to improve your target recon phase. Quickly detect technologies, WAF, exposed panels, known services.☆223Updated 2 weeks ago
- ⡷⠂𝚔𝚊𝚛𝚖𝚊 𝚟𝟸⠐⢾ is a Passive Open Source Intelligence (OSINT) Automated Reconnaissance (framework)☆903Updated 6 months ago
- Blind XSS Scanner is a tool that can be used to scan for blind XSS vulnerabilities in web applications.☆367Updated 5 months ago
- A fast tool to fetch URLs from HTML attributes by crawl-in.☆260Updated 9 months ago
- Simple tool to scan a website for (DOM-based) XSS vulnerabilities and Open Redirects.☆250Updated 9 months ago
- smartrecon is a powerful shell script to automate the recon and finding common vulnerabilities for bug hunter☆156Updated last year
- A Firefox Web Extension to improve the discovery of DOM XSS.☆280Updated last year
- ☆413Updated 4 years ago
- Generate Email, Register for anything, Get the OTP/Link☆589Updated 2 years ago
- Bypass 4xx HTTP response status codes and more. The tool is based on Python Requests, PycURL, and HTTP Client.☆251Updated 2 months ago
- Dome - Subdomain Enumeration Tool. Fast and reliable python script that makes active and/or passive scan to obtain subdomains and search …☆539Updated last year
- A collection of hacker tools using HackerOne's API☆272Updated 4 years ago
- CrackQL is a GraphQL password brute-force and fuzzing utility.☆344Updated last year