vitorfhc / gecko
Chrome extension for automating CSPT discovery
☆80Updated last week
Alternatives and similar repositories for gecko:
Users that are interested in gecko are comparing it to the libraries listed below
- Finds graphql queries in javascript files☆61Updated 11 months ago
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆139Updated 10 months ago
- Golang tool which helps dropping the irrelevant entries from your ffuf result file.☆136Updated 7 months ago
- unleashed ffuf☆112Updated 10 months ago
- ☆102Updated 6 months ago
- Useful configurations for the DomLogger++ extension☆34Updated 7 months ago
- For unpacking base64:ed "Save items"-content from Burp (From search + proxy history)☆50Updated 2 months ago
- Go scanner to find web cache poisoning vulnerabilities in a list of URLs☆138Updated last year
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆134Updated 4 months ago
- ai-based domain name generation☆90Updated 3 months ago
- This Chromium extension scans the page for external iFrames, Scripts, and Styles, logs them to the console, and checks if their domains a…☆51Updated 3 months ago
- A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs☆66Updated 2 months ago
- 🛠️ Workflows created by the community☆65Updated last month
- Scans remote JavaScript files with Trufflehog + Semgrep to detect leaked secrets☆55Updated 3 months ago
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆79Updated last year
- Identify virtual hosts by similarity comparison☆119Updated 8 months ago
- A path-normalization pentesting tool.☆126Updated last year
- A tool to guess the rest of the shortnames provided by vulnerable IIS instances.☆40Updated last year
- ☆62Updated 2 years ago
- ☆43Updated 4 months ago
- ☆31Updated last year
- Tool to parse subdomains from dmarc.live☆73Updated last year
- MapperPlus facilitates the extraction of source code from a collection of targets that have publicly exposed .js.map files.☆172Updated 7 months ago
- A recon tool that uses ML to predict subdomains. Then returns those that resolve.☆82Updated 2 weeks ago
- Deploy a SOCKS5 proxy in DigitalOcean and autoconfigure the Burp proxy settings to route all traffic through the droplet☆56Updated 6 months ago
- Enumerate old versions of robots.txt paths using Wayback Machine for content discovery☆47Updated last year
- ☆41Updated 2 months ago
- This repository stores some of my custom BCheck Scan configurations. Its goal is to identify intriguing elements that warrant further man…☆96Updated last year
- Legitimate bug bounty programs value ethical practices and provide clear rewards to researchers for identifying security flaws☆36Updated 7 months ago
- jxscout superpowers JavaScript analysis for security researchers☆101Updated this week