takito1812 / log4j-detectLinks
Simple Python 3 script to detect the "Log4j" Java library vulnerability (CVE-2021-44228) for a list of URLs with multithreading
☆194Updated 3 years ago
Alternatives and similar repositories for log4j-detect
Users that are interested in log4j-detect are comparing it to the libraries listed below
Sorting:
- Remote command execution vulnerability scanner for Log4j.☆254Updated 2 years ago
- Full Nuclei automation script with logic explanation.☆245Updated 3 years ago
- ☆327Updated 2 months ago
- ☆171Updated 3 years ago
- Hidden parameters discovery suite☆225Updated 2 years ago
- Text4Shell scanner for Burp Suite☆191Updated 2 years ago
- Http request smuggling vulnerability scanner☆229Updated 3 years ago
- Go scripts for finding sensitive data like API key / some keywords in the github repository☆159Updated 3 years ago
- Build your own reconnaissance system with Osmedeus Next Generation☆197Updated 2 months ago
- Make URL path combinations using a wordlist☆171Updated 2 years ago
- Check AWS S3 instances for read/write/delete access☆121Updated 3 years ago
- This Python script can be used to bypass IP source restrictions using HTTP headers.☆396Updated 3 weeks ago
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆296Updated last year
- A Burp Suite Extension for Application Penetration Testing to map flows and vulnerabilities☆120Updated last year
- A fully automated, reliable, super-fast, scanning and validation toolkit for the Log4J RCE CVE-2021-44228 vulnerability.☆398Updated 9 months ago
- Log4Shell scanner for Burp Suite☆486Updated 2 years ago
- ActiveScan++ Burp Suite Plugin☆232Updated 2 months ago
- A Burp Suite plugin/extension that offers a shell in Burp. Both useful for OS Command injection and LFI exploration☆78Updated 5 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆267Updated 2 years ago
- ☆524Updated 2 years ago
- Bypass 4xx HTTP response status codes and more. The tool is based on Python Requests, PycURL, and HTTP Client.☆248Updated 2 weeks ago
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆513Updated 3 years ago
- Multi-threaded, IPv6 aware, wordlists/single-user username enumeration via CVE-2018-15473☆109Updated last year
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆164Updated 4 years ago
- Nuclei templates written by geeknik. Claude is my co-pilot. 🤖☆279Updated 2 months ago
- Exploit for CVE-2021-3129☆68Updated 4 years ago
- this repository is a docker containing some "XSS vulnerability" challenges and bypass examples.☆117Updated 3 years ago
- 🔑 Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials.☆422Updated 3 weeks ago
- Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator☆168Updated 4 years ago
- automated web assets enumeration & scanning [DEPRECATED]☆288Updated 2 years ago