trufflesecurity / driftwoodLinks
Private key usage verification
☆429Updated 5 months ago
Alternatives and similar repositories for driftwood
Users that are interested in driftwood are comparing it to the libraries listed below
Sorting:
- An open source intelligence tool to crawl the graph of certificate Alternate Names☆357Updated 2 weeks ago
- Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration☆300Updated this week
- Eliminate dangling elastic IPs by performing analysis on your resources within all your AWS accounts.☆278Updated 11 months ago
- Uncover forgotten secrets and bring them back to life, haunting security and operations teams.☆208Updated 2 years ago
- ChopChop is a CLI to help developers scanning endpoints and identifying exposition of sensitive services/files/folders.☆701Updated last year
- A suite of secret scanners built in Rust for performance. Based on TruffleHog (https://github.com/dxa4481/truffleHog) which is written in…☆526Updated 2 months ago
- ☆394Updated 3 years ago
- Cloudlist is a tool for listing Assets from multiple Cloud Providers.☆970Updated 2 weeks ago
- A checklist of practices for organizations dealing with account takeover (ATO)☆272Updated 11 months ago
- Find cloud assets that no one wants exposed 🔎 ☁️☆348Updated 5 years ago
- Fetch web pages using headless Chrome, storing all fetched resources including JavaScript files. Run arbitrary JavaScript on many web pag…☆524Updated 4 months ago
- Find secrets in your codebase☆124Updated 6 months ago
- Tool to check for dependency confusion vulnerabilities in multiple package management systems☆754Updated last year
- Fast and stealthy Amazon S3 bucket enumeration tool for pentesters.☆253Updated last month
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆139Updated 3 years ago
- 🍪 CookieMonster helps you detect and abuse vulnerable implementations of stateless sessions.☆907Updated 8 months ago
- A golang utility to spider through a website searching for additional links.☆341Updated 4 years ago
- FestIn - Open S3 Bucket Scanner☆233Updated 4 years ago
- List of periodically validated public DNS resolvers☆234Updated this week
- Second-order subdomain takeover scanner☆408Updated 2 weeks ago
- Search exposed EBS volumes for secrets☆299Updated 2 years ago
- A small collection of potentially useful contract templates☆404Updated 3 months ago
- The request.bin of DNS request☆235Updated 7 years ago
- A collection of awesome AWS S3 tools that collects and enumerates exposed S3 buckets☆381Updated last year
- S3 Account Search☆18Updated last month
- A simple HTTP(S) and DNS Canary bot with Slack/Discord/MS Teams/Lark/Telegram & Pushover support☆299Updated last month
- Slack Enumeration and Extraction Tool - extract sensitive information from a Slack Workspace☆774Updated 7 months ago
- Maintains a list of IPv4 DNS servers by verifying them against baseline servers, and ensuring accurate responses.☆701Updated last year
- "Can I take over DNS?" — a list of DNS providers and how to claim vulnerable domains.☆1,047Updated 6 months ago
- PwnMachine is a self hosting solution based on docker aiming to provide an easy to use pwning station for bug hunters.☆318Updated last year