themalwarenews / headerinjection
This script identifies Host Header Injection vulnerabilities in a list of URLs or a specific domain, outputting the vulnerable locations along with the specific headers causing the vulnerability
☆15Updated last year
Alternatives and similar repositories for headerinjection
Users that are interested in headerinjection are comparing it to the libraries listed below
Sorting:
- This repository has workflows created for https://github.com/RikunjSindhwad/Task-Ninja☆24Updated 9 months ago
- BBSSRF - Bug Bounty SSRF is a powerful tool to check SSRF OOB connection☆38Updated 2 years ago
- ☆44Updated last year
- Quick tool to create custom wordlists like how fuzzers work☆10Updated last year
- offy is a tool for bugbounty hunters to save money in their EC2 instances☆13Updated last year
- ☆13Updated 3 years ago
- Check if domain has bug bounty program or not☆27Updated last year
- Xss payload for bypassing waf☆16Updated 5 years ago
- Enhanced 403 bypass header☆21Updated 2 years ago
- Cool One Liners at one place to make your recon and bug bounty skills better !☆16Updated 4 years ago
- A repo for tools, utils, and wrappers that are to small to put in their own repo.☆23Updated 2 years ago
- Simple recon tool automates your recon process☆17Updated 2 years ago
- A repository to host the subdomain wordlists from my blog https://medium.com/@nynan/what-i-learnt-from-reading-217-subdomain-takeover-bug…☆40Updated 2 years ago
- ☆13Updated 8 months ago
- ☆16Updated last year
- Script for Bug Bounty☆28Updated 3 years ago
- In this repo, I have created a subdomain enumeration function that grab subdomains in deep.☆22Updated 2 years ago
- Burp Suite extension that makes your life easier by tucking the headers out of the way, so you can see the body content right away withou…☆38Updated last year
- Run ffuf with the appropriate options to brute-force the directories using the awesome different wordlists.☆24Updated 2 years ago
- A BurpSuite extension for vulnerability Scanning☆27Updated last year
- 🚀 Sling Shot R3con: Automate Your Bug Bounty and Pentest Reconnaissance with Project Discovery tools 🎯☆24Updated last year
- JSNotify is a Python script designed to monitor JavaScript files in a specified directory for changes. This tool can be used by developer…☆18Updated last year
- Automate bug bounty recon using bash alias☆14Updated 9 months ago
- List of custom Nuclei templates☆15Updated last year
- ☆17Updated last year
- Simple Python script to sort nuclei scans by severity and URL☆29Updated last year
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆16Updated 4 years ago
- A Collection of Wordlists for Penetration Testing☆14Updated 4 months ago
- This tool is intended for bounty hunters, the script installs and launches the best set of tools for expanding the attack surface, for W…☆13Updated last year
- Droz_scan is a automated script, that runs all the queries of drozer in a single run☆26Updated 2 years ago