sorokinpf / cth_wordlists
Various wordlists for bruteforce
☆32Updated 3 years ago
Alternatives and similar repositories for cth_wordlists:
Users that are interested in cth_wordlists are comparing it to the libraries listed below
- Framework for blind boolean-based sql injections exploatation. Use it if sqlmap does shit.☆27Updated 2 years ago
- Python Script for Telegram Bot is specially built for pentest & bug bounty. It's like a telegram shell.☆55Updated 2 years ago
- Bundle of wordlists for brute-forcing subdomains (World + RUSSIA based).☆65Updated 6 years ago
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆49Updated 2 years ago
- Find sensitive information using dorks from different search-engines.☆87Updated 2 months ago
- 1C RAS Offensive Security Tool☆24Updated last year
- My personal collection of nuclei templates made for fuzzing.☆27Updated 4 months ago
- Scanner for Cross-Site WebSocket Hijacking☆42Updated 4 years ago
- Prototype Pollution Scanner☆105Updated 3 years ago
- ☆36Updated 2 months ago
- ☆47Updated 3 years ago
- ☆50Updated 2 years ago
- XSS Finder Via SSTI☆53Updated last year
- Simple fork from degoogle original project with bug hunting purposes☆88Updated 2 years ago
- Highly configurable script for dictionary/spray attacks against online web applications.☆53Updated 2 years ago
- ElasticSearch exploit and Pentesting guide for penetration tester☆24Updated 2 years ago
- Tool to generate csrf payloads based on vulnerable requests☆62Updated 4 years ago
- ☆16Updated last year
- Chase subdomains by parsing the results of Google and Yandex search results☆15Updated last year
- Serpscan is a powerfull php script designed to allow you to leverage the power of dorking straight from the comfort of your command line.☆65Updated 3 years ago
- A command-line tool for Cross-Site WebSocket Hijacking☆39Updated last year
- Robust and blazing fast open-redirect vulnerability scanner with ability of recursevely crawling all of web-forms, entry points, or links…☆39Updated 2 years ago
- An automated, reliable scanner for the Log4Shell (CVE-2021-44228) vulnerability.☆43Updated 3 years ago
- Burp suite extension to find sensitive information by checking incoming text OR binary websocket messages☆23Updated this week
- Code and result files (models, etc.) related to Metadata Digger's parts using Artificial Intelligence methods.☆13Updated 4 years ago
- Takes a URL and checks the system for the tilde enum vuln and then find the files.☆22Updated 5 years ago
- Javascript payload that inject a malicious payload into the copy-buffer of the victim☆34Updated 6 years ago