thehlopster / hfuzzLinks
Wordlist for web fuzzing, made from a variety of reliable sources including: result from my pentests, git.rip, ChatGPT, Lex, nuclei templates, web-scanners, seclist, bo0m, and more.
☆101Updated 3 months ago
Alternatives and similar repositories for hfuzz
Users that are interested in hfuzz are comparing it to the libraries listed below
Sorting:
- A BurpSuite extension to create a custom word-list of endpoint and parameters for enumeration and fuzzing☆143Updated 2 years ago
- CVE Collection of jQuery UI XSS Payloads☆121Updated 3 years ago
- Simplify your life with leak detection in JavaScript. NipeJS streamlines the use of regex, making it effortless to uncover potential leak…☆96Updated last year
- BChecks collection for Burp Suite Professional☆102Updated last year
- This Burp Suite extension allows for the automatic creation and deletion of an upstream SOCKS5 proxy on popular cloud services.☆246Updated 10 months ago
- CVE Collection of jQuery XSS Payloads☆75Updated 3 years ago
- ☆138Updated last year
- A path-normalization pentesting tool.☆150Updated 3 weeks ago
- 403-bypass tool to bypass 403 responses.☆124Updated 3 years ago
- Fetches JavaScript files quickly and comprehensively.☆131Updated 2 years ago
- Parse FFUF results in GUI with option to sort based by response code , size , keyword☆100Updated last year
- A powerful bash script for massive XSS scanning leveraging Brute Logic's KNOXSS API☆75Updated last year
- A collection of useful lists for Penetration Testing & Bug Bounty - Content Discovery, Payloads, Variables, Sandbox Escaping, etc☆102Updated 11 months ago
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆83Updated 2 years ago
- ☆172Updated 2 months ago
- EndExt is a .go tool for extracting all the possible endpoints from the JS files☆219Updated last year
- ☆66Updated 3 years ago
- Custom scan profiles for use with Burp Suite Pro☆151Updated last year
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆37Updated 6 months ago
- ☆124Updated 5 months ago
- Self-hosted passive subdomain continous monitoring tool.☆170Updated 2 years ago
- Private Nuclei Templates☆100Updated 11 months ago
- Make URL path combinations using a wordlist☆169Updated 2 years ago
- A Lightning-Fast DNS Resolver written in Rust 🦀☆69Updated last year
- A basic tool to check for XSS vulnerabilities. It takes a list of URLs and checks if the parameter values appear in the response.☆30Updated last year
- Nodesub is a command-line tool for finding subdomains in bug bounty programs☆148Updated last year
- A Burp Suite extension to extract datas from source code while browsing.☆160Updated last year
- All Type of Payloads☆141Updated last year
- Backup Files Wordlist Generator - generate a comprehensive list of potential backup file Wordlist based on a given list URL and backup fi…☆88Updated 7 months ago
- Go scanner to find web cache poisoning vulnerabilities in a list of URLs☆149Updated last year