trufflesecurity / driftwoodLinks
Private key usage verification
☆432Updated 8 months ago
Alternatives and similar repositories for driftwood
Users that are interested in driftwood are comparing it to the libraries listed below
Sorting:
- An open source intelligence tool to crawl the graph of certificate Alternate Names☆360Updated 3 months ago
- ChopChop is a CLI to help developers scanning endpoints and identifying exposition of sensitive services/files/folders.☆715Updated 2 years ago
- Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration☆302Updated this week
- Eliminate dangling elastic IPs by performing analysis on your resources within all your AWS accounts.☆278Updated last year
- Cloudlist is a tool for listing Assets from multiple Cloud Providers.☆988Updated last week
- ☆414Updated 4 years ago
- "Can I take over DNS?" — a list of DNS providers and how to claim vulnerable domains.☆1,066Updated 9 months ago
- Fast and stealthy Amazon S3 bucket enumeration tool for pentesters.☆260Updated 4 months ago
- Uncover forgotten secrets and bring them back to life, haunting security and operations teams.☆209Updated 2 years ago
- A suite of secret scanners built in Rust for performance. Based on TruffleHog (https://github.com/dxa4481/truffleHog) which is written in…☆537Updated 5 months ago
- A checklist of practices for organizations dealing with account takeover (ATO)☆276Updated last year
- Tool to check for dependency confusion vulnerabilities in multiple package management systems☆769Updated last year
- 🍪 CookieMonster helps you detect and abuse vulnerable implementations of stateless sessions.☆953Updated 10 months ago
- Find cloud assets that no one wants exposed 🔎 ☁️☆350Updated 5 years ago
- Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files☆227Updated 2 weeks ago
- Fetch web pages using headless Chrome, storing all fetched resources including JavaScript files. Run arbitrary JavaScript on many web pag…☆530Updated 7 months ago
- The request.bin of DNS request☆238Updated 7 years ago
- Maintains a list of IPv4 DNS servers by verifying them against baseline servers, and ensuring accurate responses.☆716Updated last year
- 🔑 Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials.☆426Updated 2 months ago
- Second-order subdomain takeover scanner☆407Updated 3 months ago
- A golang utility to spider through a website searching for additional links.☆341Updated 5 years ago
- List of periodically validated public DNS resolvers☆236Updated this week
- Find secrets in your codebase☆123Updated 8 months ago
- Subdomain finder☆371Updated last year
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆139Updated 4 years ago
- PwnMachine is a self hosting solution based on docker aiming to provide an easy to use pwning station for bug hunters.☆322Updated last year
- High speed/Low cost CommonCrawl RegExp in Node.js☆258Updated last year
- GitHub Actions Pipeline Enumeration and Attack Tool☆718Updated 2 months ago
- Vulnerability Scan with Nuclei☆271Updated 2 weeks ago
- A small collection of potentially useful contract templates☆411Updated 6 months ago