trufflesecurity / driftwoodLinks
Private key usage verification
☆432Updated 9 months ago
Alternatives and similar repositories for driftwood
Users that are interested in driftwood are comparing it to the libraries listed below
Sorting:
- An open source intelligence tool to crawl the graph of certificate Alternate Names☆365Updated 5 months ago
- Eliminate dangling elastic IPs by performing analysis on your resources within all your AWS accounts.☆278Updated last year
- ChopChop is a CLI to help developers scanning endpoints and identifying exposition of sensitive services/files/folders.☆712Updated 2 years ago
- Uncover forgotten secrets and bring them back to life, haunting security and operations teams.☆210Updated 2 years ago
- Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration☆304Updated last week
- ☆419Updated 4 years ago
- "Can I take over DNS?" — a list of DNS providers and how to claim vulnerable domains.☆1,080Updated 11 months ago
- Cloudlist is a tool for listing Assets from multiple Cloud Providers.☆993Updated last week
- A suite of secret scanners built in Rust for performance. Based on TruffleHog (https://github.com/dxa4481/truffleHog) which is written in…☆540Updated 7 months ago
- Fast and stealthy Amazon S3 bucket enumeration tool for pentesters.☆262Updated last week
- Tool to check for dependency confusion vulnerabilities in multiple package management systems☆775Updated last year
- Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files☆228Updated last week
- A golang utility to spider through a website searching for additional links.☆342Updated 5 years ago
- Find secrets in your codebase☆125Updated 10 months ago
- Find cloud assets that no one wants exposed 🔎 ☁️☆350Updated 5 years ago
- 🍪 CookieMonster helps you detect and abuse vulnerable implementations of stateless sessions.☆963Updated last year
- A collection of awesome AWS S3 tools that collects and enumerates exposed S3 buckets☆407Updated last month
- List of periodically validated public DNS resolvers☆237Updated this week
- Fetch web pages using headless Chrome, storing all fetched resources including JavaScript files. Run arbitrary JavaScript on many web pag…☆530Updated 9 months ago
- A small collection of potentially useful contract templates☆418Updated 3 weeks ago
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆139Updated 4 years ago
- High speed/Low cost CommonCrawl RegExp in Node.js☆257Updated last year
- Slack Enumeration and Extraction Tool - extract sensitive information from a Slack Workspace☆774Updated last year
- GitHub Actions Pipeline Enumeration and Attack Tool☆722Updated 4 months ago
- A checklist of practices for organizations dealing with account takeover (ATO)☆276Updated last year
- Subdomain finder☆372Updated last year
- PwnMachine is a self hosting solution based on docker aiming to provide an easy to use pwning station for bug hunters.☆324Updated last year
- Vulnerability Scan with Nuclei☆274Updated last week
- Search exposed EBS volumes for secrets☆302Updated 2 years ago
- Maintains a list of IPv4 DNS servers by verifying them against baseline servers, and ensuring accurate responses.☆725Updated 2 years ago