thehlopster / hfuzz
Wordlist for web fuzzing, made from a variety of reliable sources including: result from my pentests, git.rip, ChatGPT, Lex, nuclei templates, web-scanners, seclist, bo0m, and more.
☆96Updated 3 weeks ago
Alternatives and similar repositories for hfuzz:
Users that are interested in hfuzz are comparing it to the libraries listed below
- CVE Collection of jQuery UI XSS Payloads☆118Updated 2 years ago
- ☆70Updated 2 years ago
- ☆130Updated 2 months ago
- A BurpSuite extension to create a custom word-list of endpoint and parameters for enumeration and fuzzing☆140Updated last year
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆74Updated last year
- CVE Collection of jQuery XSS Payloads☆70Updated 2 years ago
- A path-normalization pentesting tool.☆120Updated last year
- Simplify your life with leak detection in JavaScript. NipeJS streamlines the use of regex, making it effortless to uncover potential leak…☆89Updated 5 months ago
- Private Nuclei Templates☆89Updated last week
- ☆148Updated last year
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆36Updated 6 months ago
- ☆116Updated 11 months ago
- Blinks is a powerful Burp Suite extension that automates active scanning with Burp Suite Pro and enhances its functionality. With the int…☆113Updated last month
- Automatic Bug finder with buprsuite☆166Updated last year
- BChecks collection for Burp Suite Professional☆86Updated 7 months ago
- Unofficial Acunetix CLI tool for automated pentesting and bug hunting across large scopes.☆75Updated last year
- Go scanner to find web cache poisoning vulnerabilities in a list of URLs☆132Updated 11 months ago
- This Burp Suite extension allows for the automatic creation and deletion of an upstream SOCKS5 proxy on popular cloud services.☆240Updated last year
- ☆236Updated 3 years ago
- unleashed ffuf☆109Updated 7 months ago
- EndExt is a .go tool for extracting all the possible endpoints from the JS files☆187Updated 6 months ago
- Make URL path combinations using a wordlist☆174Updated last year
- Self-hosted passive subdomain continous monitoring tool.☆158Updated 11 months ago
- A simple Burp Suite extension to crawl JavaScript (JS) files in passive mode and display the results directly on the issues☆350Updated last year
- All Type of Payloads☆131Updated 10 months ago
- A burp suite extension that reviews backup, old, temporary and unreferenced files on web server for sensitive information (OWASP WSTG-CON…☆160Updated 10 months ago
- ☆108Updated 2 years ago
- Describe how to use ffuf different options with examples☆82Updated 2 years ago
- ☆54Updated last month
- Parse FFUF results in GUI with option to sort based by response code , size , keyword☆93Updated 4 months ago