stevemcilwain / secrets
Offsec Pentest and Bug Bounty Notes
☆24Updated 4 years ago
Alternatives and similar repositories for secrets:
Users that are interested in secrets are comparing it to the libraries listed below
- ☆24Updated 4 years ago
- My recon script☆50Updated 5 years ago
- commonspeak2 subdomains wordlist generated daily **DEPRECATED** The author(s) of commonspeak2 maintain an official repo with more lists. …☆41Updated 3 years ago
- Simple tool to test for SSRF/OOB HTTP Read within the Path of a request☆30Updated 5 years ago
- Get all possible href | src | url from target url or domain☆41Updated 4 years ago
- Subvenkon is a subdomain enumerator from Venkon☆23Updated 4 years ago
- ☆38Updated 4 years ago
- A BurpSuite plugin for BBRF☆24Updated 5 months ago
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 4 years ago
- Tool to find stored robots.txt files from the past☆17Updated last year
- Converts a hostname (or URI) to IP address using your local resolver☆25Updated last year
- A collection of scripts for bug-bounty related stuff☆38Updated 4 years ago
- Framework to automate Bug Bounty Reconnaissance☆44Updated 4 years ago
- sub domain wild card filtering tool☆41Updated 5 years ago
- Literally spray blind xss payloads everywhere.☆26Updated 3 years ago
- Bug Bounty Tools☆34Updated 4 years ago
- Burp extension that performs a passive scan to identify cloud buckets and then test them for publicly accessible vulnerabilities☆44Updated 2 years ago
- Day by day Lots of Newbie Come into bug Bounty They ask Social Site about Bug Bounty Site, So That's why I open My Hunted All Site.☆31Updated 4 years ago
- Instant access to you bug bounty submission dashboard on various platforms + publicly disclosed reports + #bugbountytip☆22Updated 4 years ago
- gup aka Get All Urls parameters to create wordlists for brute forcing parameters.☆18Updated 3 years ago
- Wraps projectdiscovery's cdncheck library to exclude CDN hosts from input passed over stdin☆43Updated 2 years ago
- Collection of content discovery wordlists in one wordlist.☆38Updated 3 years ago
- Security test tool for Blind XSS☆26Updated 5 years ago
- Single-WebApp-Target essentials testing methodology tool starting at recon-information gathering for the juicy stuff ended up in exploita…☆22Updated 3 years ago
- a tool that compiles a csv of all h1 program stats☆47Updated last year
- Messy BurpSuite plugin for SQL Truncation vulnerabilities.☆64Updated 5 years ago
- A Payload Injector for bugbounties written in go☆70Updated 4 years ago
- Tool for making it easy to collect dns results from the CLI☆40Updated 8 months ago
- It's an watcher for new scopes added to bounty-targets-data and send you alert to Slack.☆58Updated 3 years ago
- This script scrapes the list of open Bug Bounty Programs from openbugbounty.org☆27Updated 3 years ago