shabarkin / CodeAllTheThings
A list of threat sinks used in the manual security source code review for application security
☆70Updated last year
Related projects ⓘ
Alternatives and complementary repositories for CodeAllTheThings
- Striping CDN IPs from a list of IP Addresses☆74Updated 2 years ago
- Enhanced 403 bypass header☆21Updated 2 years ago
- These Repositories About My Recon Methodology To Give Some Idea For Other Hunter How To Do Recon☆43Updated 2 years ago
- Resolvers updated daily for reconftw☆46Updated last year
- Script for Bug Bounty☆28Updated 3 years ago
- BBSSRF - Bug Bounty SSRF is a powerful tool to check SSRF OOB connection☆38Updated last year
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆48Updated 2 years ago
- I collected it to help the bug hunter get a reward☆55Updated 2 years ago
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆77Updated last year
- IIS shortname scanner + bruteforce☆49Updated 9 months ago
- Feed it a list of subdomains, it will resolve them and tell you which ones are internal☆91Updated 3 years ago
- ☆30Updated 2 years ago
- Prototype Pollution Scanner☆101Updated 3 years ago
- XSS Finder Via SSTI☆54Updated last year
- It grep subdomains, email/username, build custom wordlist etc from gau results☆45Updated 2 years ago
- Damn Vulnerable PHP Application (DVPA) - It is Lab Written in The PHP lang, Which Contains PHP Type Juggling - RCE Challenges☆31Updated 2 years ago
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆67Updated 2 years ago
- Automated Web Recon Shell Scripts☆50Updated 2 years ago
- ☆56Updated last year
- Advanced Reconnaissance and Web Application Discovery☆75Updated 2 years ago
- ☆32Updated last year
- XSSearch is a comprehensive reflected XSS tool built on selenium framework in python language. It contains more than 3000 payloads for au…☆60Updated 2 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆58Updated 3 years ago
- Create your own recon & vulnerability scanner with Trickest and GitHub☆49Updated last year
- ☆36Updated this week
- A simple automation tool to detect lfi, rce and ssti vulnerability☆55Updated 2 years ago
- Basic Recon For Bug Bounty Hunter - "HuntTheBug" is Basic Scripts For Sub Domain Enumeration> Live Domain Enumeration > Sub Domain Hijack…☆50Updated 2 years ago
- Detects request smuggling via HTTP/2 downgrades.☆92Updated 2 years ago