themalwarenews / headerinjection
This script identifies Host Header Injection vulnerabilities in a list of URLs or a specific domain, outputting the vulnerable locations along with the specific headers causing the vulnerability
☆15Updated last year
Related projects ⓘ
Alternatives and complementary repositories for headerinjection
- Programs I Made while learning python for pentesters.☆18Updated 2 years ago
- ☆18Updated last year
- A solid recon tool I use personally.☆30Updated last year
- ☆12Updated 2 years ago
- Run ffuf with the appropriate options to brute-force the directories using the awesome different wordlists.☆23Updated last year
- ☆14Updated last year
- ☆43Updated last year
- Continuous Reconnaissance and Vulnerability Scanning for Bug Bounties☆16Updated 5 months ago
- ☆21Updated 2 years ago
- List of custom Nuclei templates☆15Updated last year
- This tool is intended for bounty hunters, the script installs and launches the best set of tools for expanding the attack surface, for W…☆12Updated 7 months ago
- BBSSRF - Bug Bounty SSRF is a powerful tool to check SSRF OOB connection☆38Updated last year
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆48Updated 2 years ago
- Droz_scan is a automated script, that runs all the queries of drozer in a single run☆24Updated last year
- Template Nuclei SSTI☆29Updated last year
- JSNotify is a Python script designed to monitor JavaScript files in a specified directory for changes. This tool can be used by developer…☆18Updated last year
- ☆16Updated last year
- This tool allows you to find ssti vulnerability with ease!☆19Updated 2 years ago
- Custom nuclei templates for bug hunting.....☆24Updated 5 months ago
- In this repo, I have created a subdomain enumeration function that grab subdomains in deep.☆22Updated last year
- Check if domain has bug bounty program or not☆29Updated last year
- Enhanced 403 bypass header☆21Updated 2 years ago
- XSS Finder Via SSTI☆54Updated last year
- A powerful and clean bash script to dump and extract information from Project Discovery's Chaos Project https://chaos.projectdiscovery.io…☆25Updated 2 years ago
- JsValidator is a tool created for validating the JS files after crawlling it from waybackurls☆18Updated last year
- Automate bug bounty recon using bash alias☆15Updated 3 months ago
- ☆43Updated 3 years ago
- Xss payload for bypassing waf☆14Updated 4 years ago