topscoder / fourohmeLinks
FourOhMe is a tool for testing HTTP headers on a website in order to try to bypass 40* HTTP codes. Written in Go, so easy to install and fast out of the box.
☆24Updated last year
Alternatives and similar repositories for fourohme
Users that are interested in fourohme are comparing it to the libraries listed below
Sorting:
- Simplify your life with leak detection in JavaScript. NipeJS streamlines the use of regex, making it effortless to uncover potential leak…☆94Updated 11 months ago
- Find subdomains on GitLab.☆103Updated last year
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆37Updated last week
- Go scanner to find web cache poisoning vulnerabilities in a list of URLs☆143Updated last year
- A path-normalization pentesting tool.☆128Updated last year
- A BurpSuite extension to create a custom word-list of endpoint and parameters for enumeration and fuzzing☆140Updated 2 years ago
- Fetches JavaScript files quickly and comprehensively.☆126Updated 2 years ago
- A Lightning-Fast DNS Resolver written in Rust 🦀☆67Updated 8 months ago
- ParamScan is a chrome extension for finding reflected parameters in a webpage.☆83Updated 6 months ago
- CVE Collection of jQuery XSS Payloads☆71Updated 2 years ago
- A powerful bash script for massive XSS scanning leveraging Brute Logic's KNOXSS API☆73Updated 6 months ago
- BChecks collection for Burp Suite Professional☆100Updated last year
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆77Updated last year
- ☆134Updated 8 months ago
- ☆42Updated 10 months ago
- This Python script automates the process of identifying vulnerabilities in Firebase configurations extracted from APK files.☆44Updated 4 months ago
- Save your dorking results to the terminal. A modified version of TomNomNom's amazing tool!☆90Updated 5 months ago
- PoC for XSS in org.webjars:swagger-ui [3.14.2, 3.36.2]☆53Updated 2 years ago
- Morgan is a powerful tool designed to help security researchers, developers, and security auditors identify sensitive information, vulner…☆54Updated 6 months ago
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆71Updated 2 years ago
- ☆74Updated last month
- Self-hosted passive subdomain continous monitoring tool.☆165Updated last year
- Mine URLs from Browser's Heap Snapshot for fun and profit☆63Updated last year
- A basic tool to check for XSS vulnerabilities. It takes a list of URLs and checks if the parameter values appear in the response.☆28Updated last year
- A Burp Suite extension to extract datas from source code while browsing.☆158Updated last year
- Scans remote JavaScript files with Trufflehog + Semgrep to detect leaked secrets☆65Updated 6 months ago
- Wordlist for web fuzzing, made from a variety of reliable sources including: result from my pentests, git.rip, ChatGPT, Lex, nuclei templ…☆103Updated 4 months ago
- ☆161Updated 2 years ago
- web cache deception detect☆29Updated 2 months ago
- Authorization-Nuclei-Templates☆40Updated 10 months ago