stamparm / identYwafView external linksLinks
Blind WAF identification tool
☆713Jun 25, 2024Updated last year
Alternatives and similar repositories for identYwaf
Users that are interested in identYwaf are comparing it to the libraries listed below
Sorting:
- WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.☆6,157Jan 27, 2026Updated 2 weeks ago
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆4,117Apr 21, 2024Updated last year
- Detect and bypass web application firewalls and protection systems☆2,868Aug 11, 2024Updated last year
- Automatic SSRF fuzzer and exploitation tool☆3,479Sep 4, 2025Updated 5 months ago
- OneForAll是一款功能强大的子域收集工具☆9,601Sep 12, 2025Updated 5 months ago
- Quick SQLMap Tamper Suggester☆1,391Jul 18, 2022Updated 3 years ago
- HTTP parameter discovery suite.☆6,086Feb 20, 2025Updated 11 months ago
- Bypassing WAF by abusing SSL/TLS Ciphers☆321Jul 27, 2021Updated 4 years ago
- Fast web fuzzer written in Go☆15,574Apr 24, 2025Updated 9 months ago
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the ac…☆1,771Apr 26, 2024Updated last year
- CMS Detection and Exploitation suite - Scan WordPress, Joomla, Drupal and over 180 other CMSs☆2,513Apr 9, 2024Updated last year
- Everything about Web Application Firewalls (WAFs) from Security Standpoint! 🔥☆7,353Aug 28, 2025Updated 5 months ago
- HaE - Highlighter and Extractor, Empower ethical hacker for efficient operations.☆4,030Updated this week
- Packer Fuzzer is a fast and efficient scanner for security detection of websites constructed by javascript module bundler such as Webpack…☆3,205May 24, 2024Updated last year
- Local file inclusion exploitation tool☆925Oct 1, 2025Updated 4 months ago
- 基于chrome、firefox插件的被动式信息泄漏检测工具☆1,377Nov 17, 2024Updated last year
- A powerful browser crawler for web vulnerability scanners☆3,018Mar 11, 2025Updated 11 months ago
- 侦查守卫(ObserverWard)的指纹库☆1,325Updated this week
- Next generation web scanner☆6,406Oct 19, 2025Updated 3 months ago
- This tool generates gopher link for exploiting SSRF and gaining RCE in various servers☆3,296Apr 18, 2023Updated 2 years ago
- EHole(棱洞)3.0 重构版-红队重点攻击系统指纹探测工具☆3,435Apr 2, 2024Updated last year
- 一款适用于以HW行动/红队/渗透测试团队为场景的移动端(Android、iOS、WEB、H5、静态网站)信息收集扫描工具,可以帮助渗透测试工程师、攻击队成员、红队成员快速收集到移动端或者静态WEB站点中关键的资产信息并提供基本的信息输出,如:Title、Domain、CDN…☆3,506Dec 18, 2022Updated 3 years ago
- JSFinder is a tool for quickly extracting URLs and subdomains from JS files on a website.☆2,909Nov 24, 2021Updated 4 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆8,733Dec 4, 2025Updated 2 months ago
- Burp suite 分块传输辅助插件☆2,021Feb 23, 2022Updated 3 years ago
- Cross Site "Scripter" (aka XSSer) is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications…☆1,416Sep 17, 2024Updated last year
- A toolkit for testing, tweaking and cracking JSON Web Tokens☆6,357May 1, 2025Updated 9 months ago
- Passive Security Scanner (被动式安全扫描器)☆1,946Feb 8, 2023Updated 3 years ago
- Linux privilege escalation auditing tool☆6,389Updated this week
- pocsuite3 is an open-sourced remote vulnerability testing framework developed by the Knownsec 404 Team.☆3,833Feb 28, 2025Updated 11 months ago
- Asset discovery and identification tools 快速识别 Web 指纹信息,定位资产类型。辅助红队快速定位目标资产信息,辅助蓝队发现疑似脆弱点☆2,140Jan 29, 2024Updated 2 years ago
- weblogic 漏洞扫描工具。目前包含对以下漏洞的检测能力:CVE-2014-4210、CVE-2016-0638、CVE-2016-3510、CVE-2017-3248、CVE-2017-3506、CVE-2017-10271、CVE-2018-2628、CVE-201…☆2,073Nov 24, 2023Updated 2 years ago
- 构建优化高效的渗透 fuzz 字典合集☆1,883Jun 17, 2025Updated 7 months ago
- 红/蓝队环境自动化部署工具 | Red/Blue team environment automation deployment tool☆2,082Jan 27, 2026Updated 2 weeks ago
- A tool to perform Kerberos pre-auth bruteforcing☆3,236Aug 20, 2024Updated last year
- SSRF plugin for burp Automates SSRF Detection in all of the Request☆610Jan 20, 2021Updated 5 years ago
- A Swagger API Exploit☆1,371Jun 7, 2024Updated last year
- You Know, For WEB Fuzzing !☆8,255Nov 13, 2023Updated 2 years ago
- Unexpected information 是用于标记请求包中的一些敏感信息、JS接口和一些特殊字段的BurpSuite 插件。☆688Jan 4, 2021Updated 5 years ago