streaak / SSRF-TestingLinks
SSRF (Server Side Request Forgery) testing resources
☆11Updated 8 years ago
Alternatives and similar repositories for SSRF-Testing
Users that are interested in SSRF-Testing are comparing it to the libraries listed below
Sorting:
- Dump all available paths and/or endpoints on WADL file.☆94Updated 2 weeks ago
- Pass list of urls with FUZZ in and it will check if it has found a potential SSRF.☆110Updated 3 years ago
- A tool to perform permutations, mutations and alteration of subdomains in golang.☆158Updated last year
- Just some public notes that can be useful and i want let the world knows.☆88Updated 4 years ago
- Detects request smuggling via HTTP/2 downgrades.☆94Updated 3 years ago
- ☆108Updated 4 years ago
- ☆18Updated 4 years ago
- ☆76Updated 4 years ago
- Find subdomains and takeovers.☆86Updated 2 years ago
- Real world bug bounty wordlists☆118Updated 2 years ago
- A list of Awesome Bughunting oneliners , collected from the various sources☆69Updated 2 years ago
- ☆44Updated 4 years ago
- It's an watcher for new scopes added to bounty-targets-data and send you alert to Slack.☆59Updated 3 years ago
- MNS is a security and reconnaissance tool for monitoring new subdomains☆69Updated last month
- ☆75Updated last year
- Utility to pull disclosed vulnerabilities from HackerOne private programs - for personal use only☆13Updated 4 years ago
- Misc bounty and vulndisc things☆86Updated 4 years ago
- ☆16Updated 3 years ago
- Extract relative urls from a heap snapshot☆87Updated 4 years ago
- Tool to find the real IP behind CDNs/WAFs like cloudflare using passive recon by retrieving the favicon hash. For the same hash value, al…☆179Updated 4 years ago
- Match and Replace script used to automatically generate JSON option file to BurpSuite☆215Updated 6 years ago
- apkizer is a mass downloader for android applications for all available versions.☆47Updated 4 years ago
- A Python based scanner to find potential SSRF parameters in a web application.☆70Updated 4 years ago
- Adds a customizable "Send to..."-context-menu to your BurpSuite.☆163Updated 2 years ago
- Takeover subdomains using AWS dangling elastic ips and have a working POC for Subdomain Takeover.☆93Updated 2 months ago
- A tool to find subdomains or domains from passive sources.☆115Updated 4 years ago
- My Tools For Bug Bounty☆67Updated 11 months ago
- Client-Side Prototype Pollution Tools☆85Updated 4 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆131Updated 4 years ago
- Get the scope of your bugcrowd programs☆67Updated 4 years ago