z3dc0ps / BBSSRF
BBSSRF - Bug Bounty SSRF is a powerful tool to check SSRF OOB connection
☆38Updated last year
Related projects ⓘ
Alternatives and complementary repositories for BBSSRF
- Enhanced 403 bypass header☆21Updated 2 years ago
- Resolvers updated daily for reconftw☆46Updated last year
- A demo PHP application used to exercise SQL injection techniques in a safe, local Docker environment☆39Updated 5 months ago
- A simple automation tool to detect lfi, rce and ssti vulnerability☆55Updated 2 years ago
- Web cache poisoning vulnerability scanner.☆61Updated 2 years ago
- A Go tool that gets the newest PRs from projectdiscovery/nuclei-templates.☆53Updated last year
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆48Updated 2 years ago
- Fast Bug Bounty Script☆36Updated last year
- ☆20Updated last year
- IIS shortname scanner + bruteforce☆49Updated 9 months ago
- JSNotify is a Python script designed to monitor JavaScript files in a specified directory for changes. This tool can be used by developer…☆18Updated last year
- A solid recon tool I use personally.☆30Updated last year
- I collected it to help the bug hunter get a reward☆55Updated 2 years ago
- Run ffuf with the appropriate options to brute-force the directories using the awesome different wordlists.☆23Updated last year
- Tool for testing reflections in the HTTP responses☆60Updated last year
- ☆36Updated last year
- ☆35Updated 11 months ago
- ☆12Updated 2 years ago
- Authorization-Nuclei-Templates☆37Updated 2 months ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆16Updated 3 years ago
- A repository to host the subdomain wordlists from my blog https://medium.com/@nynan/what-i-learnt-from-reading-217-subdomain-takeover-bug…☆40Updated 2 years ago
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆67Updated 2 years ago
- Some of the gf patterns which i use☆39Updated 2 years ago
- ☆18Updated last year
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆68Updated 10 months ago
- ☆43Updated 3 years ago
- A simple utility to perform reverse WHOIS lookups using whoisxml API☆36Updated last year
- It grep subdomains, email/username, build custom wordlist etc from gau results☆45Updated 2 years ago
- Check if domain has bug bounty program or not☆29Updated last year