thehlopster / hfuzz
Wordlist for web fuzzing, made from a variety of reliable sources including: result from my pentests, git.rip, ChatGPT, Lex, nuclei templates, web-scanners, seclist, bo0m, and more.
☆100Updated 2 weeks ago
Alternatives and similar repositories for hfuzz:
Users that are interested in hfuzz are comparing it to the libraries listed below
- CVE Collection of jQuery UI XSS Payloads☆118Updated 2 years ago
- This Burp Suite extension allows for the automatic creation and deletion of an upstream SOCKS5 proxy on popular cloud services.☆241Updated 2 weeks ago
- A BurpSuite extension to create a custom word-list of endpoint and parameters for enumeration and fuzzing☆140Updated last year
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆75Updated last year
- ☆130Updated 4 months ago
- BChecks collection for Burp Suite Professional☆96Updated 9 months ago
- Simplify your life with leak detection in JavaScript. NipeJS streamlines the use of regex, making it effortless to uncover potential leak…☆90Updated 7 months ago
- A path-normalization pentesting tool.☆125Updated last year
- CVE Collection of jQuery XSS Payloads☆71Updated 2 years ago
- ☆118Updated last year
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆36Updated 8 months ago
- Blinks is a powerful Burp Suite extension that automates active scanning with Burp Suite Pro and enhances its functionality. With the int…☆114Updated 3 months ago
- Describe how to use ffuf different options with examples☆86Updated 2 years ago
- A simple Burp Suite extension to crawl JavaScript (JS) files in passive mode and display the results directly on the issues☆353Updated last year
- Huge Collection of Wordpress Exploits and CVES☆123Updated 2 years ago
- Private Nuclei Templates☆97Updated last month
- ☆156Updated last year
- ☆238Updated 3 years ago
- Automated Tool for Testing Header Based Blind SQL Injection☆273Updated last year
- unleashed ffuf☆111Updated 9 months ago
- Self-hosted passive subdomain continous monitoring tool.☆160Updated last year
- Fetches JavaScript files quickly and comprehensively.☆113Updated last year
- The Template Injection Table is intended to help during the testing of an application for template injection vulnerabilities.☆78Updated last year
- ☆68Updated 2 years ago
- Custom scan profiles for use with Burp Suite Pro☆138Updated last year
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆133Updated 9 months ago
- Go scanner to find web cache poisoning vulnerabilities in a list of URLs☆138Updated last year
- A Burp Suite extension to extract datas from source code while browsing.☆157Updated last year
- ☆130Updated 3 years ago
- All Type of Payloads☆136Updated last year