vsec7 / BurpSuite-Xkeys
A Burp Suite Extension to extract interesting strings (key, secret, token, or etc.) from a webpage.
☆294Updated 10 months ago
Alternatives and similar repositories for BurpSuite-Xkeys
Users that are interested in BurpSuite-Xkeys are comparing it to the libraries listed below
Sorting:
- ☆293Updated 2 years ago
- Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations☆363Updated 4 years ago
- Domains belonging to the most reputed public bug bounty programs. [NOT FOR NON-MONETARY OR PRIVATE PROGRAMS]☆216Updated 8 months ago
- jsubfinder searches webpages for javascript & analyzes them for hidden subdomains and secrets (wip).☆271Updated 4 months ago
- XRCross is a Reconstruction, Scanner, and a tool for penetration / BugBounty testing. This tool was built to test (XSS|SSRF|CORS|SSTI|ID…☆336Updated last year
- ☆182Updated last year
- HTTP Request Smuggling Detection Tool☆498Updated last year
- This a adaption of tomnomnom's kxss tool with a different output format☆467Updated last year
- Burpsuite plugin for Interact.sh☆221Updated 10 months ago
- A tool to check a bunch of URLs that contain reflecting params.☆576Updated 9 months ago
- DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it☆452Updated last year
- Nuclei templates written by us.☆271Updated 3 years ago
- Gotator is a tool to generate DNS wordlists through permutations.☆477Updated 2 years ago
- Automating XSS using Bash☆355Updated last year
- Python tool to find potential Server Side Reqest Forgery (SSRF) vulnerability parameters.☆319Updated last month
- Bug Bounty stuffs, payloads, scripts, profiles, tips and tricks, ...☆147Updated 4 years ago
- Heuristic Vulnerable Parameter Scanner☆592Updated last year
- information gathering☆276Updated last year
- A very (very) FAST and simple subdomain finder based on online & free services. Without any configuration requirements.☆112Updated 6 months ago
- Turbo Intruder Scripts☆222Updated 4 years ago
- A Burp extension helps identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations,…☆371Updated last month
- Secret and/or credential patterns used for gf.☆240Updated 2 years ago
- Hidden parameters discovery suite☆223Updated 2 years ago
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆294Updated 7 months ago
- The Repository contains various payloads, tools, tips and tricks from various hackers around the world. Please take a quick look down her…☆192Updated 2 months ago
- Js File Scanner☆169Updated 3 years ago
- Automated tool for domains & subdomains gathering☆187Updated last year
- This tool use fuuzzing to try to bypass unknown authentication methods, who knows...☆248Updated 9 months ago
- Monitoring framework to detect and report newly found subdomains on a specific target using various scanning tools☆273Updated 10 months ago
- HackerOne "in scope" domains☆443Updated this week