sherlock-ohm / burpscanLinks
☆94Updated 6 months ago
Alternatives and similar repositories for burpscan
Users that are interested in burpscan are comparing it to the libraries listed below
Sorting:
- GarudRecon automates domain recon with top open-source tools to discover assets, enumerate subdomains, and detect XSS, SQLi, LFI, RCE & m…☆164Updated last week
- Advanced CORS Header Checker Tool with Vulnerability Detection and Bypass Attempts☆65Updated 4 months ago
- Frogy 2.0 is an automated external reconnaissance and Attack Surface Management (ASM) toolkit☆260Updated last week
- ⚡ XSSuccessor is a powerful, asynchronous Cross-Site Scripting (XSS) detection tool.☆57Updated 9 months ago
- ☆124Updated 2 months ago
- Dnsbruter is a powerful tool designed to perform active subdomain enumeration and discovery. It uses DNS resolution to efficiently brutef…☆123Updated 10 months ago
- This repository contains my writeups for the labs in PortSwigger's Web Security Academy platform. Each lab writeup includes the lab's nam…☆102Updated 3 months ago
- Search for all leaked keys/secrets using one regex! bugbounty☆140Updated 6 months ago
- SAST and DAST Scan Supported with 400 plus rules available for secrets and allow you add your own wordlist as well. lightweight source c…☆102Updated 2 months ago
- A New Approach to Directory Bruteforce with WaybackLister v1.0☆210Updated 2 months ago
- Analyze Android native `.so` files☆85Updated 2 months ago
- ☆47Updated 7 months ago
- ☆73Updated 4 months ago
- Ultimate Tasks Automation Framework for Hackers, DevSecOps, Pentesters, and Bug-bounty hunters!☆153Updated last month
- Unwaf is a Go tool designed to help identify WAF bypasses using passive techniques, such as: SPF records and DNS history. By default, Unw…☆98Updated 3 months ago
- SubOwner - A Simple tool check for subdomain takeovers.☆115Updated last year
- A passive way to find backups/ sensitive information.☆89Updated 3 months ago
- Parse FFUF results in GUI with option to sort based by response code , size , keyword☆98Updated last year
- IDOR Forge is an advanced and versatile tool designed to detect Insecure Direct Object Reference (IDOR) vulnerabilities in web applicatio…☆188Updated last month
- Scripts, files, cheatsheets and more used for pentesting and my OSWE / AWAE exam.☆94Updated 2 months ago
- GBounty is a multi-step website vulnerability scanner developed in Golang designed to help companies, pentesters, and bug hunters identif…☆148Updated last month
- A Powerful Recon Engine☆68Updated 11 months ago
- This script automates SQL injection testing using SQLMap with AI-powered decision making.☆24Updated 4 months ago
- 🪄 XSSDynaGen is a tool designed to analyze URLs with parameters, identify the characters allowed by the server, and generate advanced XS…☆54Updated 9 months ago
- A tool for inspecting and analyzing mobile application storage files.☆47Updated 5 months ago
- ☆189Updated 6 months ago
- Blinks is a powerful Burp Suite extension that automates active scanning with Burp Suite Pro and enhances its functionality. With the int…☆138Updated 10 months ago
- Apache HTTP Server Vulnerability Testing Tool | PoC for CVE-2024-38472 , CVE-2024-39573 , CVE-2024-38477 , CVE-2024-38476 , CVE-2024-3847…☆107Updated last year
- IDOR Scanner is a Burp Suite extension that automates the detection and enumeration of potentially vulnerable numeric fields to identify …☆39Updated 8 months ago
- Checks for SSRF using built-in custom Payloads after fetching URLs from Multiple Passive Sources & applying complex patterns aimed at SSR…☆128Updated last year