sec-it / pass-station
CLI & library to search for default credentials among thousands of Products / Vendors
☆62Updated 3 years ago
Alternatives and similar repositories for pass-station:
Users that are interested in pass-station are comparing it to the libraries listed below
- ☆52Updated 2 years ago
- Target practice for ffuf☆61Updated 3 years ago
- Checks whether a domain is hosted on a cloud service such as AWS, Azure or CloudFlare☆58Updated 2 years ago
- A "Spring4Shell" vulnerability scanner.☆50Updated 3 weeks ago
- Mind Maps for penetration testing☆18Updated 4 years ago
- Simple CLI tool for the generation of downloader oneliners for UNIX-like or Windows systems☆40Updated 4 years ago
- HTTP verb tampering & methods enumeration☆56Updated 2 years ago
- A python3 script searching for secret on swaggerhub☆60Updated 2 years ago
- ☆72Updated 9 months ago
- Company Passwords Profiler (aka ComPP) helps making a bruteforce wordlist for a targeted company.☆59Updated 3 years ago
- A simple python script to dump remote files through a local file read or local file inclusion web vulnerability.☆67Updated 11 months ago
- CLI & library to search for default credentials among thousands of Products / Vendors☆46Updated 2 weeks ago
- ☆37Updated 3 years ago
- Find alive host from dumped subdomains, huge domain list , alive subdomains☆27Updated 3 years ago
- DNS resolution tracing tool☆34Updated 3 years ago
- A simple automation tool to detect lfi, rce and ssti vulnerability☆55Updated 3 years ago
- ☆68Updated last year
- Striping CDN IPs from a list of IP Addresses☆75Updated 2 years ago
- AssetViz simplifies the visualization of subdomains from input files, presenting them as a coherent mind map. Ideal for penetration test…☆32Updated 10 months ago
- ParamFirstCheck identifies in a list of urls those containing a parameter of the top 25 of the most vulnerable parameters for SQLi, LFI, …☆32Updated last year
- A curated list wordlists for bruteforcing and fuzzing☆81Updated last year
- ☆76Updated 3 years ago
- Script to automate, when possible, the passive reconnaissance performed on a website prior to an assessment.☆37Updated 2 weeks ago
- Search for sensitive data in Postman public library. Original work from https://github.com/cosad3s/postleaks☆26Updated last year
- Simple bash Script to automate initial recon using (httpx, puredns, regulator, wayback, katana, aquatone)☆35Updated 2 years ago
- JIRA"YA is a vulnerability analyzer for JIRA instances. It runs active scans to identify vulnerabilities by interacting with the host and…☆33Updated 5 months ago
- Repository of CVE found by OCD people☆75Updated 7 months ago
- A fast enumeration tool for publicly exposed Azure Storage blobs.☆86Updated last year
- PassMute - A multi featured Password Transmutation/Mutator Tool☆51Updated last year
- Script for Bug Bounty☆28Updated 3 years ago