solo10010 / reconWTF
This tool is intended for bounty hunters, the script installs and launches the best set of tools for expanding the attack surface, for Web Sites, portals, and Organizations.
☆12Updated 8 months ago
Alternatives and similar repositories for reconWTF:
Users that are interested in reconWTF are comparing it to the libraries listed below
- Bxss Sniper: A web application penetration testing tool for Blind XSS detection☆17Updated last year
- Find CVEs that don't have a Detectify modules.☆21Updated last year
- ☆14Updated last year
- XSS Finder Via SSTI☆53Updated last year
- Collection of templates from various resources☆21Updated 6 months ago
- A simple utility to generate domain names with all possible TLDs☆23Updated last year
- Blind spot is a python tool for blind injection vulnerabilities , SQLi time based , Command injection , code injection , SSTI☆27Updated 4 years ago
- JsValidator is a tool created for validating the JS files after crawlling it from waybackurls☆18Updated last year
- JSNotify is a Python script designed to monitor JavaScript files in a specified directory for changes. This tool can be used by developer…☆18Updated last year
- This tool allows you to find ssti vulnerability with ease!☆20Updated 2 years ago
- Community curated list of templates for the erebus engine to find security vulnerabilities.☆16Updated 3 years ago
- ☆21Updated 4 years ago
- Log4jScanner is a Log4j Related CVEs Scanner, Designed to Help Penetration Testers to Perform Black Box Testing on given subdomains.☆39Updated 3 years ago
- Passively check for XSS character encodings☆18Updated last year
- A repo for tools, utils, and wrappers that are to small to put in their own repo.☆23Updated last year
- JaelesFuzzer is a Powerful Automation tool for detecting XSS, SQLi, SSRF, Open-Redirect, etc.. Vulnerabilities in Web Applications☆12Updated 8 months ago
- PathBuster - multiple hosts Web path scanner☆22Updated 7 months ago
- [CVE-2024-4956] Nexus Repository Manager 3 Unauthenticated Path Traversal Bulk Scanner☆14Updated 3 months ago
- Your subdomains are free for the taking - no API key, no mistaking! 🕺☆34Updated last year
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆16Updated 3 years ago
- A Burp Extension that makes it easier to view all script code on a Response.☆13Updated last year
- Credax - Fuzzing Tool with Slack Notifications. Also removes false positive responses.☆10Updated 3 years ago
- Generating Sub-Sub-Subdomain + validating all of them☆10Updated last year
- Automate bug bounty recon using bash alias☆15Updated 5 months ago
- Quick tool to create custom wordlists like how fuzzers work☆11Updated last year
- This repository contains random Nuclei templates I've created. Most of them based on recent security issues and exploits.☆15Updated 7 months ago
- My fuzz repo!☆22Updated last year
- ☆21Updated 2 years ago
- List of custom Nuclei templates☆15Updated last year