vavkamil / XSSwagger
A simple Swagger-ui scanner that can detect old versions vulnerable to various XSS attacks
☆57Updated 5 years ago
Alternatives and similar repositories for XSSwagger:
Users that are interested in XSSwagger are comparing it to the libraries listed below
- Burp Bounty profiles☆82Updated 3 years ago
- Messy BurpSuite plugin for SQL Truncation vulnerabilities.☆63Updated 4 years ago
- Expand urls into one url for each path depth☆32Updated 4 years ago
- ☆59Updated 7 months ago
- ☆44Updated 3 years ago
- A Payload Injector for bugbounties written in go☆70Updated 4 years ago
- ☆60Updated 3 years ago
- Script to test open Akamai ARL vulnerability.☆70Updated 3 years ago
- Wraps projectdiscovery's cdncheck library to exclude CDN hosts from input passed over stdin☆42Updated last year
- Sometimes we want to fuzz a set of sub-domain URLs with a common wordlist. Fuzzing them one by one is a tedious task, not to mention the …☆51Updated 3 years ago
- a tool that compiles a csv of all h1 program stats☆46Updated last year
- All known and unknown public POC's for wordpress themes and plugins☆79Updated 3 years ago
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 3 years ago
- A collection of code for interacting with API sources directly to improve your understanding of those services.☆66Updated 4 years ago
- Extract SSL certificate data (Subject Name, Subject Alt Names, Organisation)☆42Updated 2 weeks ago
- Horizontal Domain Discovery☆75Updated last year
- Burp-suite Extension For finding .map files☆45Updated last year
- A tool to perform permutations, mutations and alteration of subdomains in golang.☆157Updated last year
- Bug Bounty Tools☆34Updated 4 years ago
- Get the scope of your bugcrowd programs☆66Updated 4 years ago
- Some of my bug bounty tools☆48Updated 5 years ago
- Pass list of urls with FUZZ in and it will check if it has found a potential SSRF.☆107Updated 3 years ago
- WordPress Plugin Update Confusion☆67Updated 3 years ago
- Simple tool to test for SSRF/OOB HTTP Read within the Path of a request☆30Updated 5 years ago
- ☆24Updated 4 years ago
- unicode abnormalizer to takes a unicode string and abnormalizes it by character replacment☆27Updated 4 years ago
- Extract (links/possible endpoints) from responses & filter them via decoding/sorting☆88Updated 5 years ago
- A collection of scripts for bug-bounty related stuff☆38Updated 4 years ago
- A simple tool to detect wildcards domain based on Amass's wildcards detector.☆62Updated 3 years ago
- Misc bounty and vulndisc things☆83Updated 4 years ago