wireghoul / grauditLinks
grep rough audit - source code auditing tool
☆1,621Updated last month
Alternatives and similar repositories for graudit
Users that are interested in graudit are comparing it to the libraries listed below
Sorting:
- A curated list of amazingly awesome Burp Extensions☆3,212Updated 4 months ago
- Automatic SSRF fuzzer and exploitation tool☆3,232Updated 3 months ago
- SSRF (Server Side Request Forgery) testing resources☆2,411Updated 8 months ago
- A DNS rebinding attack framework.☆1,114Updated 2 weeks ago
- Subdomain Takeover tool written in Go☆1,979Updated last year
- Notes about attacking Jenkins servers☆2,062Updated 11 months ago
- ☆2,265Updated last year
- Generates permutations, alterations and mutations of subdomains and then resolves them☆2,418Updated 5 months ago
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆3,953Updated last year
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,815Updated 3 years ago
- Offensive Web Testing Framework (OWTF), is a framework which tries to unite great tools and make pen testing more efficient http://owtf.o…☆1,875Updated 2 weeks ago
- The cheat sheet about Java Deserialization vulnerabilities☆3,108Updated 2 years ago
- File upload vulnerability scanner and exploitation tool.☆3,215Updated last month
- This tool generates gopher link for exploiting SSRF and gaining RCE in various servers☆3,110Updated 2 years ago
- The Swiss Army knife for automated Web Application Testing☆2,252Updated last year
- The XSS Hunter service - a portable version of XSSHunter.com☆1,528Updated 2 years ago
- AppSec Ezine Public Repository.☆1,174Updated this week
- Proof-of-Concept exploits for CVEs found by the team at Rhino Security Labs☆860Updated 3 weeks ago
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the ac…☆1,739Updated last year
- A python script that finds endpoints in JavaScript files☆3,984Updated last year
- A tool for embedding XXE/XML exploits into different filetypes☆1,088Updated 6 months ago
- Scan for misconfigured S3 buckets across S3-compatible APIs!☆2,805Updated 3 weeks ago
- Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease appli…☆1,066Updated 3 months ago
- Fetch many paths for many hosts - without killing the hosts☆1,660Updated last year
- GitHub recon tool leveraging Code Search API. Scans for exposed API keys across all of GitHub, not just known repos and orgs. Support for…☆1,314Updated last week
- Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.☆1,644Updated 6 months ago
- Convolutional neural network for analyzing pentest screenshots☆1,217Updated last year
- ✍️ A curated list of CVE PoCs.☆3,412Updated 3 years ago
- Finds unknown classes of injection vulnerabilities☆687Updated last month
- Easily turn single threaded command line applications into a fast, multi-threaded application with CIDR and glob support.☆1,255Updated 2 months ago