sdushantha / dora
Find exposed API keys based on RegEx and get exploitation methods for some of keys that are found
☆332Updated last year
Alternatives and similar repositories for dora:
Users that are interested in dora are comparing it to the libraries listed below
- ☆374Updated 3 years ago
- Subdomain finder☆364Updated 7 months ago
- A command-line utility designed to discover URLs for a given domain in a simple, efficient way. It works by gathering information from a …☆579Updated 3 weeks ago
- mx-takeover focuses DNS MX records and detects misconfigured MX records.☆344Updated last year
- Astra is a tool to find URLs and secrets inside a webpage/files☆209Updated last year
- Heuristic Vulnerable Parameter Scanner☆577Updated last year
- Find subdomains with GPT, for free☆337Updated 9 months ago
- Jbin will gather all the URLs from the website and then it will try to expose the secret data from them such as API keys, API secrets, AP…☆156Updated 2 years ago
- A phased, evasive Path Traversal + LFI scanning & exploitation tool in Python☆198Updated 3 years ago
- Keyfinder🔑 is a tool that let you find keys while surfing the web!☆524Updated last year
- Open Redirection Analyzer☆763Updated last year
- Wordlists handcrafted (and automated) with ♥☆213Updated 9 months ago
- Google Dork File Finder☆189Updated 2 weeks ago
- Turns any junk text into a usable wordlist for brute-forcing.☆218Updated 10 months ago
- Weaponizing WaybackUrls for Recon, BugBounties , OSINT, Sensitive Endpoints and what not☆277Updated 4 months ago
- Automating XSS using Bash☆352Updated 9 months ago
- Http request smuggling vulnerability scanner☆225Updated 2 years ago
- Web Application Security Testing Tools☆238Updated 10 months ago
- XSScope is one of the most powerful and advanced GUI Framework for Modern Browser exploitation via XSS.☆313Updated 2 years ago
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆501Updated 2 years ago
- A bash script that will automatically install a list of bug hunting tools that I find interesting for recon, exploitation, etc. (minus bu…☆560Updated 2 years ago
- Dome - Subdomain Enumeration Tool. Fast and reliable python script that makes active and/or passive scan to obtain subdomains and search …☆523Updated 11 months ago
- Making Favicon.ico based Recon Great again !☆1,141Updated last year
- Get related domains / subdomains by looking at Google Analytics IDs☆242Updated 2 years ago
- oneliner commands for bug bounties☆431Updated 2 years ago
- Rust-based high performance domain permutation generator.☆280Updated last year
- Automated Recon for Pentesting & Bug Bounty☆422Updated 11 months ago
- Automation Recon tool which works with Large & Medium scopes. It performs a lot of tasks and gets back all the results in separated files…☆680Updated 6 months ago
- BugBountyTips☆404Updated 7 months ago
- Golang client for querying SecurityTrails API data☆544Updated last year