vsec7 / BurpSuite-XkeysLinks
A Burp Suite Extension to extract interesting strings (key, secret, token, or etc.) from a webpage.
β302Updated last year
Alternatives and similar repositories for BurpSuite-Xkeys
Users that are interested in BurpSuite-Xkeys are comparing it to the libraries listed below
Sorting:
- DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on itβ454Updated last year
- Nuclei templates written by geeknik. Claude is my co-pilot. π€β275Updated last month
- Python tool to find potential Server Side Reqest Forgery (SSRF) vulnerability parameters.β332Updated last month
- Monitoring framework to detect and report newly found subdomains on a specific target using various scanning toolsβ278Updated last year
- β295Updated 3 years ago
- Bug Bounty stuffs, payloads, scripts, profiles, tips and tricks, ...β149Updated 5 years ago
- Hidden parameters discovery suiteβ225Updated 2 years ago
- Create your Custom Wordlist For Fuzzingβ199Updated 11 months ago
- The Repository contains various payloads, tools, tips and tricks from various hackers around the world. Please take a quick look down herβ¦β209Updated last month
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource loadβ295Updated 11 months ago
- HTTP Request Smuggling Detection Toolβ522Updated last year
- A python tool to check subdomain takeover vulnerabilityβ332Updated 2 years ago
- You can read the writeup on this script hereβ274Updated 5 years ago
- Command line tool for testing CRLF injection on a list of domains.β164Updated last year
- A very (very) FAST and simple subdomain finder based on online & free services. Without any configuration requirements.β114Updated 10 months ago
- β182Updated last year
- Toolkit to detect and keep track on Blind XSS, XXE & SSRFβ292Updated 6 years ago
- jsubfinder searches webpages for javascript & analyzes them for hidden subdomains and secrets (wip).β275Updated 8 months ago
- GG Dorking is a tool to generate GitHub and Google dorking for pentesters and bug bounty hunters.β97Updated 2 months ago
- Burpsuite plugin for Interact.shβ227Updated last year
- Domains belonging to the most reputed public bug bounty programs. [NOT FOR NON-MONETARY OR PRIVATE PROGRAMS]β222Updated last year
- Full Nuclei automation script with logic explanation.β245Updated 3 years ago
- Js File Scannerβ169Updated 3 years ago
- Default signature for Jaeles Scannerβ324Updated 3 years ago
- Nuclei Templates - Here you will find the templates I use while huntingβ119Updated 3 years ago
- Enumerate Subdomains Through Google Dorks (Bypassed Page Filter)β125Updated 2 months ago
- Secret and/or credential patterns used for gf.β241Updated 2 years ago
- A list of useful payloads and Bypass for Web Application Security and Bug Bounty/CTFβ168Updated 5 years ago
- A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.β182Updated 3 years ago
- Match and Replace script used to automatically generate JSON option file to BurpSuiteβ215Updated 6 years ago