wireghoul / graudit
grep rough audit - source code auditing tool
☆1,566Updated 3 weeks ago
Alternatives and similar repositories for graudit:
Users that are interested in graudit are comparing it to the libraries listed below
- A curated list of amazingly awesome Burp Extensions☆3,040Updated 2 months ago
- SSRF (Server Side Request Forgery) testing resources☆2,375Updated 3 months ago
- Generates permutations, alterations and mutations of subdomains and then resolves them☆2,358Updated last week
- Notes about attacking Jenkins servers☆2,018Updated 6 months ago
- The XSS Hunter service - a portable version of XSSHunter.com☆1,506Updated 2 years ago
- Subdomain Takeover tool written in Go☆1,926Updated last year
- ☆2,191Updated last year
- A Tool for Domain Flyovers☆5,694Updated 2 years ago
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆3,850Updated 8 months ago
- Discover Your Attack Surface!☆1,369Updated 2 years ago
- Automatic SSRF fuzzer and exploitation tool☆3,051Updated 7 months ago
- A security tool for multithreaded information gathering and service enumeration whilst building directory structures to store results, al…☆2,128Updated 2 years ago
- Scan for misconfigured S3 buckets across S3-compatible APIs!☆2,642Updated this week
- DotDotPwn - The Directory Traversal Fuzzer☆1,004Updated 2 years ago
- GraphQLmap is a scripting engine to interact with a graphql endpoint for pentesting purposes. - Do not use for illegal testing ;)☆1,415Updated 10 months ago
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the ac…☆1,694Updated 8 months ago
- File upload vulnerability scanner and exploitation tool.☆3,154Updated last year
- ☆1,284Updated this week
- Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner☆1,730Updated 2 years ago
- "Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.☆4,964Updated last week
- The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, f…☆4,094Updated 3 months ago
- A python script that finds endpoints in JavaScript files☆3,789Updated 9 months ago
- EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.☆5,106Updated 2 months ago
- A tool for embedding XXE/XML exploits into different filetypes☆1,053Updated last month
- AppSec Ezine Public Repository.☆1,117Updated last week
- List of XSS Vectors/Payloads☆1,204Updated 2 weeks ago
- A DNS rebinding attack framework.☆1,052Updated 3 weeks ago
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,711Updated 3 years ago
- ☆966Updated last week
- The Swiss Army knife for automated Web Application Testing☆2,185Updated 8 months ago