Topic: "bugbounty-tool"
hahwul/dalfox
ππ¦ Dalfox is a powerful open-source XSS scanner and utility focused on automation.
Language: Go - Size: 29.4 MB - Last synced at: 13 days ago - Pushed at: 14 days ago - Stars: 4,273 - Forks: 468

jonaslejon/malicious-pdf
π Generate a bunch of malicious pdf files with phone-home functionality. Can be used with Burp Collaborator or Interact.sh
Language: Python - Size: 52.7 KB - Last synced at: 12 days ago - Pushed at: 27 days ago - Stars: 3,025 - Forks: 403

doyensec/inql
InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable scans, and seamless Burp integration.
Language: Kotlin - Size: 18.3 MB - Last synced at: 4 days ago - Pushed at: 18 days ago - Stars: 1,632 - Forks: 168

0xmaximus/Galaxy-Bugbounty-Checklist
Tips and Tutorials for Bug Bounty and also Penetration Tests.
Size: 1.91 MB - Last synced at: about 2 months ago - Pushed at: over 1 year ago - Stars: 1,459 - Forks: 354

Viralmaniar/BigBountyRecon
BigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial reconnaissance on the target organisation.
Language: C# - Size: 6.64 MB - Last synced at: 9 days ago - Pushed at: over 4 years ago - Stars: 1,354 - Forks: 261

dwisiswant0/go-dork
The fastest dork scanner written in Go.
Language: Go - Size: 4.56 MB - Last synced at: 10 days ago - Pushed at: over 1 year ago - Stars: 1,208 - Forks: 132

Autumn-27/ScopeSentry
ScopeSentry-Cyberspace mapping, subdomain enumeration, port scanning, sensitive information discovery, vulnerability scanning, distributed nodes
Language: Python - Size: 100 MB - Last synced at: 20 days ago - Pushed at: 20 days ago - Stars: 1,131 - Forks: 163

taielab/awesome-hacking-lists
A curated collection of top-tier penetration testing tools and productivity utilities across multiple domains. Join us to explore, contribute, and enhance your hacking toolkit!
Size: 6.43 MB - Last synced at: 24 days ago - Pushed at: about 2 months ago - Stars: 1,099 - Forks: 229

KathanP19/JSFScan.sh
Automation for javascript recon in bug bounty.
Language: Shell - Size: 50.8 KB - Last synced at: 10 days ago - Pushed at: over 1 year ago - Stars: 997 - Forks: 182

robotshell/magicRecon
MagicRecon is a powerful shell script to maximize the recon and data collection process of an objective and finding common vulnerabilities, all this saving the results obtained in an organized way in directories and with various formats.
Language: Shell - Size: 588 KB - Last synced at: 9 days ago - Pushed at: 10 months ago - Stars: 979 - Forks: 164

sh377c0d3/Payloads
Payload Arsenal for Pentration Tester and Bug Bounty Hunters
Language: PHP - Size: 82.4 MB - Last synced at: 6 months ago - Pushed at: about 2 years ago - Stars: 892 - Forks: 187

bitquark/shortscan
An IIS short filename enumeration tool
Language: Go - Size: 3.7 MB - Last synced at: 6 months ago - Pushed at: 6 months ago - Stars: 806 - Forks: 76

R0X4R/Garud
An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters and scans for some low hanging vulnerabilities automatically.
Language: Shell - Size: 3.36 MB - Last synced at: 9 days ago - Pushed at: almost 2 years ago - Stars: 787 - Forks: 176

dwisiswant0/ppfuzz
A fast tool to scan client-side prototype pollution vulnerability written in Rust. π¦
Language: Rust - Size: 68.4 KB - Last synced at: 10 days ago - Pushed at: about 2 years ago - Stars: 618 - Forks: 60

chiasmod0n/chiasmodon
Chiasmodon is an OSINT tool designed to assist in the process of gathering information about a target domain. Its primary functionality revolves around searching for domain-related data, including domain emails, domain credentials, CIDRs , ASNs , and subdomains, the tool also allows users to search Google Play application ID.
Language: Python - Size: 250 KB - Last synced at: 23 days ago - Pushed at: 23 days ago - Stars: 583 - Forks: 41

KathanP19/Gxss π¦
A tool to check a bunch of URLs that contain reflecting params.
Language: Go - Size: 49.8 KB - Last synced at: 6 months ago - Pushed at: 10 months ago - Stars: 539 - Forks: 80

kleiton0x00/ppmap
A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.
Language: Go - Size: 49.8 KB - Last synced at: 7 days ago - Pushed at: almost 3 years ago - Stars: 505 - Forks: 76

edoardottt/csprecon
Discover new target domains using Content Security Policy
Language: Go - Size: 6.56 MB - Last synced at: 10 days ago - Pushed at: 19 days ago - Stars: 433 - Forks: 49

taielab/Taie-Bugbounty-killer
ζζε½ε ε€ζΌζ΄εΉ³ε°εΏ ε€ηθͺε¨εζ‘ι±θ΅ιζε·§οΌηδΊεΉΆε»εδΊζ‘ι±ε¦εζ°΄γ
Size: 5.04 MB - Last synced at: 13 days ago - Pushed at: over 4 years ago - Stars: 418 - Forks: 33

edoardottt/missing-cve-nuclei-templates
Weekly updated list of missing CVEs in nuclei templates official repository. Mainly built for bug bounty, but useful for penetration tests and vulnerability assessments too.
Language: Shell - Size: 9.11 MB - Last synced at: 13 days ago - Pushed at: 14 days ago - Stars: 379 - Forks: 41

r3curs1v3-pr0xy/sub404 π¦
A python tool to check subdomain takeover vulnerability
Language: Python - Size: 421 KB - Last synced at: 3 days ago - Pushed at: over 2 years ago - Stars: 333 - Forks: 60

pikpikcu/XRCross
XRCross is a Reconstruction, Scanner, and a tool for penetration / BugBounty testing. This tool was built to test (XSS|SSRF|CORS|SSTI|IDOR|RCE|LFI|SQLI) vulnerabilities
Language: Shell - Size: 2.85 MB - Last synced at: 6 months ago - Pushed at: almost 2 years ago - Stars: 329 - Forks: 71

cc1a2b/JShunter
jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive data, such as API endpoints and potential security vulnerabilities, making it an essential resource for and bug bounty hunters and security researchers.
Language: Go - Size: 152 KB - Last synced at: 4 months ago - Pushed at: 5 months ago - Stars: 328 - Forks: 43

ImAyrix/cut-cdn
βοΈ Removing CDN IPs from the list of IP addresses
Language: Go - Size: 98.6 KB - Last synced at: 4 months ago - Pushed at: 4 months ago - Stars: 311 - Forks: 45

blackhatethicalhacking/TerminatorZ
TerminatorZ is a highly sophisticated and efficient web security tool that scans for top potential vulnerabilities with known CVEs in your web applications.
Language: Shell - Size: 74.2 KB - Last synced at: 7 days ago - Pushed at: 9 months ago - Stars: 276 - Forks: 38

abhijithb200/investigator
An online handy-recon tool
Language: CSS - Size: 438 KB - Last synced at: 6 months ago - Pushed at: over 1 year ago - Stars: 256 - Forks: 39

Neelakandan-A/BugBounty_CheatSheet
BugBounty_CheatSheet
Size: 133 KB - Last synced at: 6 months ago - Pushed at: about 2 years ago - Stars: 248 - Forks: 54

blackhatethicalhacking/Nucleimonst3r
Nucleimonst3r is a powerful vulnerability scanner that can help Bug Bounty Hunters find low hanging fruit vulnerabilities for known CVEs and exploits but also gather all the technology running behind them for further investigation for a potential target.
Language: Shell - Size: 99.6 KB - Last synced at: 13 days ago - Pushed at: about 2 months ago - Stars: 246 - Forks: 46

zzzteph/probable_subdomains
Subdomains analysis and generation tool. Reveal the hidden!
Size: 4.77 GB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 236 - Forks: 24

dwisiswant0/cf-check
CloudFlare Checker written in Go
Language: Go - Size: 19.5 KB - Last synced at: 7 days ago - Pushed at: about 1 year ago - Stars: 231 - Forks: 42

InfosecHouse/InfosecHouse
Tools & Resources for Cyber Security Operations
Size: 98.5 MB - Last synced at: 6 days ago - Pushed at: 14 days ago - Stars: 227 - Forks: 55

codingo/bbr
An open source tool to aid in command line driven generation of bug bounty reports based on user provided templates.
Language: Go - Size: 4.59 MB - Last synced at: 26 days ago - Pushed at: over 4 years ago - Stars: 210 - Forks: 35

Static-Flow/gofingerprint
GoFingerprint is a Go tool for taking a list of target web servers and matching their HTTP responses against a user defined list of fingerprints.
Language: Go - Size: 43.9 KB - Last synced at: about 2 months ago - Pushed at: almost 2 years ago - Stars: 205 - Forks: 36

ShivamRai2003/Reconky-Automated_Bash_Script
Reconky is an great Content Discovery bash script for bug bounty hunters which automate lot of task and organized in the well mannered form which help them to look forward.
Language: Shell - Size: 15.8 MB - Last synced at: 24 days ago - Pushed at: over 2 years ago - Stars: 198 - Forks: 42

Shivangx01b/CorsMe
Cross Origin Resource Sharing MisConfiguration Scanner
Language: Go - Size: 141 KB - Last synced at: 2 months ago - Pushed at: over 3 years ago - Stars: 173 - Forks: 29

hueristiq/web-hacking-toolkit
A web hacking toolkit (docker image).
Language: Makefile - Size: 223 MB - Last synced at: about 2 months ago - Pushed at: over 2 years ago - Stars: 169 - Forks: 29

RossGeerlings/webstor
WebStor efficiently enumerates all websites across your organizationβs networks and those in your DNS records - including cloud-hosted servers via zone transfer data - stores their responses, and lets you query for known web technologies, including those with zero-day vulnerabilities.
Language: Python - Size: 199 KB - Last synced at: 6 months ago - Pushed at: about 1 year ago - Stars: 151 - Forks: 19

Anon-Artist/R3C0Nizer
R3C0Nizer is the first ever CLI based menu-driven web application B-Tier recon framework.
Language: Shell - Size: 495 KB - Last synced at: 7 months ago - Pushed at: about 4 years ago - Stars: 148 - Forks: 46

Alikhalkhali/programs-watcher
A Python script designed to monitor bug bounty programs for any changes and promptly notify users.
Language: Python - Size: 1.36 MB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 147 - Forks: 28

RikunjSindhwad/Task-Ninja
Ultimate Tasks Automation Framework for Hackers, DevSecOps, Pentesters, and Bug-bounty hunters!
Language: Go - Size: 168 KB - Last synced at: 6 months ago - Pushed at: 6 months ago - Stars: 144 - Forks: 22

daffainfo/bash-bounty
Random Tools for Bug Bounty
Language: Shell - Size: 50.8 KB - Last synced at: about 1 month ago - Pushed at: over 2 years ago - Stars: 144 - Forks: 39

trickest/insiders
Archive of Potential Insider Threats
Size: 379 MB - Last synced at: 6 months ago - Pushed at: over 1 year ago - Stars: 136 - Forks: 20

drak3hft7/VPS-Bug-Bounty-Tools
Script that automates the installation of the main tools used for web application penetration testing and Bug Bounty.
Language: Shell - Size: 108 KB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 134 - Forks: 37

aydinnyunus/PassDetective
PassDetective is a command-line tool that scans shell command history to detect mistakenly written passwords, API keys, and secrets. Using regular expressions, it helps prevent accidental exposure of sensitive information in your command history.
Language: Go - Size: 2.64 MB - Last synced at: about 2 months ago - Pushed at: 12 months ago - Stars: 129 - Forks: 8

darklotuskdb/sd-goo
Enumerate Subdomains Through Google Dorks
Language: Shell - Size: 35.2 KB - Last synced at: 2 months ago - Pushed at: 2 months ago - Stars: 123 - Forks: 24

junnlikestea/vita
A tool to find subdomains or domains from passive sources.
Language: Rust - Size: 235 KB - Last synced at: 6 months ago - Pushed at: over 4 years ago - Stars: 107 - Forks: 16

Spix0r/writeup-miner
This is a useful Python script for extracting bug bounty or any other write-ups from Medium.com and other websites (soon).
Language: Python - Size: 31.3 KB - Last synced at: 5 months ago - Pushed at: 5 months ago - Stars: 106 - Forks: 12

Spix0r/robofinder
Robofinder retrieves historical #robots.txt files from #Archive.org, allowing you to uncover previously disallowed directories and paths for any domainβessential for deepening your #OSINT and #recon process.
Language: Python - Size: 44.9 KB - Last synced at: 4 months ago - Pushed at: 4 months ago - Stars: 100 - Forks: 13

1N3/AttackSurfaceManagement
Discover the attack surface and prioritize risks with our continuous Attack Surface Management (ASM) platform - Sn1per Professional #pentest #redteam #bugbounty
Language: Shell - Size: 33.3 MB - Last synced at: 26 days ago - Pushed at: over 3 years ago - Stars: 94 - Forks: 18

dwisiswant0/wadl-dumper
Dump all available paths and/or endpoints on WADL file.
Language: Go - Size: 37.1 KB - Last synced at: 7 days ago - Pushed at: 27 days ago - Stars: 93 - Forks: 18

BLACK-SCORP10/Email-Vulnerability-Checker
Find Email Spoofing Vulnerablity of domains
Language: Shell - Size: 214 KB - Last synced at: 5 months ago - Pushed at: 10 months ago - Stars: 93 - Forks: 10

samogod/bugradar
Advanced external automation on bug bounty programs by running the best set of tools to perform scanning and finding out vulnerabilities.
Size: 73.2 KB - Last synced at: about 1 year ago - Pushed at: almost 3 years ago - Stars: 93 - Forks: 17

t0thkr1s/frida
Frida scripts for mobile application dynamic-analysis.
Language: Python - Size: 208 KB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 89 - Forks: 28

i5nipe/nipejs
Simplify your life with leak detection in JavaScript. NipeJS streamlines the use of regex, making it effortless to uncover potential leaks.
Language: Go - Size: 1.47 MB - Last synced at: 6 months ago - Pushed at: 10 months ago - Stars: 88 - Forks: 20

aufzayed/HydraRecon
All In One, Fast, Easy Recon Tool
Language: Python - Size: 40 KB - Last synced at: 23 days ago - Pushed at: almost 3 years ago - Stars: 87 - Forks: 12

udit-thakkur/AdvancedKeyHacks
API Key/Token Exploitation Made easy.
Language: Shell - Size: 43 KB - Last synced at: 6 months ago - Pushed at: almost 4 years ago - Stars: 87 - Forks: 29

Alaa-abdulridha/CloudSniffer
CloudSniffer is a powerful tool designed to aid in the discovery of the real IP address of a website protected by Cloudflare. It leverages brute force techniques by testing a list of IP addresses and analyzing the status codes returned by the server to uncover the actual IP address of the target website.
Language: Python - Size: 15.6 KB - Last synced at: 4 days ago - Pushed at: almost 2 years ago - Stars: 86 - Forks: 10

gerosecurity/gerobug
The First Open Source Bug Bounty Platform
Language: HTML - Size: 11.5 MB - Last synced at: about 10 hours ago - Pushed at: about 16 hours ago - Stars: 82 - Forks: 17

hahwul/gee
π΅ Gee is tool of stdin to each files and stdout. It is similar to the tee command, but there are more functions for convenience. In addition, it was written as go
Language: Go - Size: 737 KB - Last synced at: 5 days ago - Pushed at: 6 months ago - Stars: 82 - Forks: 14

DEMON1A/Discord-Recon
Discord bot created to automate bug bounty recon, automated scans and information gathering via a discord server
Language: Python - Size: 158 KB - Last synced at: 2 months ago - Pushed at: over 1 year ago - Stars: 77 - Forks: 19

x0rr-dan/s1c0n
simple recon tool to help you for searching vulnerability on web server
Language: Python - Size: 3.97 MB - Last synced at: 3 days ago - Pushed at: 3 months ago - Stars: 73 - Forks: 15

osamahamad/payout-targets-data
Provides public bug bounty programs in-scope data that offer rewards and monitors public bug bounty programs assets.
Size: 4.7 MB - Last synced at: about 2 months ago - Pushed at: about 2 months ago - Stars: 71 - Forks: 11

yuyudhn/reverseip_py π¦
Domain Parser for IPAddress.com Reverse IP Lookup
Language: Python - Size: 1.95 KB - Last synced at: over 1 year ago - Pushed at: over 2 years ago - Stars: 70 - Forks: 17

mirzaaghazadeh/jsdif
A powerful JavaScript monitoring tool for bug bounty hunters. Track changes in JavaScript files across websites, detect new attack surfaces, and stay ahead of security vulnerabilities.
Language: Go - Size: 903 KB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 69 - Forks: 9

Root-Down-Digital/pentesting-resources
Pentest/Red Team: Resources, repos and scripts.
Language: Shell - Size: 613 KB - Last synced at: 14 days ago - Pushed at: 14 days ago - Stars: 68 - Forks: 15

x86trace/Bug-Hunting-Setup
Bash script that streamlines the process of setting up your Debian Linux machine for bug hunting.
Language: Shell - Size: 9.77 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 66 - Forks: 12

codingo/dooked
DNS and Target HTTP History Local Storage and Search
Language: C++ - Size: 54.7 KB - Last synced at: 7 days ago - Pushed at: over 4 years ago - Stars: 64 - Forks: 14

th3cyb3rhub/hackliner
HackLiners: CyberSec/BugHunting OneLiners
Size: 35.2 KB - Last synced at: about 14 hours ago - Pushed at: 8 months ago - Stars: 57 - Forks: 14

PatrikFehrenbach/BugBountyBlueprint
A tool offering templates for streamlined bug bounty reporting
Language: Vue - Size: 733 KB - Last synced at: 9 days ago - Pushed at: over 1 year ago - Stars: 57 - Forks: 7

AmoloHT/TTWAF
γπ§±γTest a list of payloads and see if you can bypass it
Language: Rust - Size: 4.74 MB - Last synced at: 3 months ago - Pushed at: almost 3 years ago - Stars: 57 - Forks: 11

kabilan1290/grapX
grapX will iterate through the URLs and grep the endpoints with all possible extensions.
Language: Python - Size: 143 KB - Last synced at: 6 months ago - Pushed at: about 4 years ago - Stars: 57 - Forks: 24

Drayko/Bot-Bounty
Python Script for Telegram Bot is specially built for pentest & bug bounty. It's like a telegram shell.
Language: Python - Size: 206 KB - Last synced at: about 2 months ago - Pushed at: about 2 months ago - Stars: 55 - Forks: 16

dwisiswant0/continuous-nuclei π¦
Running nuclei Continuously
Language: Shell - Size: 3.91 KB - Last synced at: 6 months ago - Pushed at: over 2 years ago - Stars: 55 - Forks: 18

kljunowsky/CVE-2022-42889-text4shell
Apache commons text - CVE-2022-42889 Text4Shell proof of concept exploit.
Language: Python - Size: 15.6 KB - Last synced at: 6 months ago - Pushed at: over 1 year ago - Stars: 54 - Forks: 9

darklotuskdb/SSTI-XSS-Finder
XSS Finder Via SSTI
Language: Shell - Size: 28.3 KB - Last synced at: 6 months ago - Pushed at: over 1 year ago - Stars: 54 - Forks: 14

AngixBlack/Corscan
Advanced CORS Header Checker Tool with Vulnerability Detection and Bypass Attempts
Language: Python - Size: 640 KB - Last synced at: 9 months ago - Pushed at: 9 months ago - Stars: 52 - Forks: 12

DreyAnd/DeadDNS
DNS hijacking via dead records automation tool
Language: Python - Size: 28.3 KB - Last synced at: 6 months ago - Pushed at: over 4 years ago - Stars: 50 - Forks: 15

eslam3kl/3klector
3klector is an automation Recon tool which collecting information about Acquisitions and ASN which related to Big Scope company
Language: Python - Size: 158 KB - Last synced at: 6 months ago - Pushed at: over 2 years ago - Stars: 49 - Forks: 16

Alikhalkhali/active-ip
π΅οΈββοΈπ A tool with several scanning techniques that extracts live IP addresses from a list of IP addresses or CIDR notations.
Language: Go - Size: 84 KB - Last synced at: 12 months ago - Pushed at: about 2 years ago - Stars: 47 - Forks: 9

tamimhasan404/Gau-Expose
It grep subdomains, email/username, build custom wordlist etc from gau results
Language: Shell - Size: 30.3 KB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 45 - Forks: 16

e1abrador/Burp-Encode-IP
Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.
Language: Python - Size: 101 KB - Last synced at: 20 days ago - Pushed at: about 1 year ago - Stars: 44 - Forks: 6

sudosuraj/Awesome-Bug-Bounty
This is my personal repo, which includes bug bounty tips, a collection of tools, one-liners, and other resources I personally prefer while hunting. It is still under development, so feel free to contribute.
Language: PHP - Size: 160 KB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 43 - Forks: 5

YazeedOliwah/Black_Viru5_Recon_v1.0
These Repositories About My Recon Methodology To Give Some Idea For Other Hunter How To Do Recon
Size: 475 KB - Last synced at: 6 months ago - Pushed at: over 2 years ago - Stars: 43 - Forks: 8

R0X4R/ssrf-tool π¦
An SSRF detector tool written in golang. I have fixed some errors and added some more payloads to it. But the tool credits go to z0idsec.
Language: Go - Size: 455 KB - Last synced at: 6 months ago - Pushed at: over 4 years ago - Stars: 43 - Forks: 11

HexNio/ssl_pinning_remover
An Android SSL Pinning Remover tool for Security research and Bug Bounty
Language: Python - Size: 149 KB - Last synced at: 6 days ago - Pushed at: about 2 years ago - Stars: 42 - Forks: 10

SomeKirill/wordlist_generator
Unique wordlist generator of unique wordlists.
Language: Python - Size: 340 KB - Last synced at: 6 months ago - Pushed at: almost 2 years ago - Stars: 41 - Forks: 9

gilts/wsee
A CDN Domain Fronting Tool or Websocket Discovery written in Python
Language: Python - Size: 183 KB - Last synced at: almost 2 years ago - Pushed at: about 2 years ago - Stars: 40 - Forks: 11

acuciureanu/ppfang
A tool which helps identifying client-side prototype polluting libraries
Language: JavaScript - Size: 600 KB - Last synced at: 23 days ago - Pushed at: about 1 month ago - Stars: 39 - Forks: 0

karthi-the-hacker/crlfi
CRLF Bug scanner for WebPentesters and Bugbounty Hunters
Language: JavaScript - Size: 425 KB - Last synced at: 2 days ago - Pushed at: almost 2 years ago - Stars: 39 - Forks: 7

Dc4ts/ChangeTower
ChangeTower is intended to help you watch changes in webpages and get notified of any changes written in Go
Language: Go - Size: 33.2 KB - Last synced at: 6 months ago - Pushed at: almost 4 years ago - Stars: 39 - Forks: 10

karthi-the-hacker/Gh0stR3c0n
All in one web Recon app
Language: HTML - Size: 22.8 MB - Last synced at: 6 months ago - Pushed at: 12 months ago - Stars: 38 - Forks: 15

sam5epi0l/waybackshot
(CLI wrapper) Takes a list of URLs and retrieve screenshots of older versions stored on the Wayback Machine.
Language: Python - Size: 7.81 KB - Last synced at: about 2 months ago - Pushed at: almost 3 years ago - Stars: 38 - Forks: 5

xcapri/dProgBb
Detect Program Bug Bounty
Language: Python - Size: 1.41 MB - Last synced at: 5 months ago - Pushed at: 5 months ago - Stars: 37 - Forks: 13

indianajson/cloudfish
Subdomain enumeration using Cloudflare's scanning tool.
Language: Python - Size: 19.5 KB - Last synced at: about 1 year ago - Pushed at: almost 2 years ago - Stars: 37 - Forks: 7

AdmiralGaust/bountyReconV2
Framework to automate Bug Bounty Reconnaissance
Language: Python - Size: 3.33 MB - Last synced at: about 2 years ago - Pushed at: over 4 years ago - Stars: 37 - Forks: 9

ElSicarius/SuperTruder π¦
A python3 intruder that gave me bounties, easy to use and as fast as fuff
Language: Python - Size: 23.9 MB - Last synced at: about 1 year ago - Pushed at: over 4 years ago - Stars: 36 - Forks: 8

junnlikestea/bulkssrf
Tests for SSRF by injecting a specified location into different headers. This is a Rust port of m4ll0k's tool.
Language: Rust - Size: 13.7 KB - Last synced at: 6 months ago - Pushed at: almost 5 years ago - Stars: 36 - Forks: 7

xcapri/subdosec
Subdosec is a fast, accurate subdomain takeover scanner with no false positives. It also offers a database of sites vulnerable to subdomain takeover (public results), along with detailed metadata like IP, CNAME, TITLE, and STATUS CODE for reconnaissance to identify potential new vulnerabilities.
Language: Python - Size: 5.31 MB - Last synced at: 3 days ago - Pushed at: about 1 month ago - Stars: 35 - Forks: 12

CalfCrusher/RobinHood
RobinHood - Bug Hunting Recon Automation Script
Language: Shell - Size: 403 KB - Last synced at: 2 months ago - Pushed at: over 2 years ago - Stars: 35 - Forks: 16

ZishanAdThandar/burptoggle
Burp Suite Proxy Toggler Lite Add-on for Mozilla Firefox.
Language: JavaScript - Size: 67.4 KB - Last synced at: about 2 months ago - Pushed at: 9 months ago - Stars: 31 - Forks: 6
