Stars
Documentation and Sharing Repository for ThreatPinch Lookup Chrome & Firefox Extension
This is go CLI tool for send fast Multiple get HTTP request.
E-mails, subdomains and names Harvester - OSINT
APIKit:Discovery, Scan and Audit APIs Toolkit All In One.
Deploy a SOCKS5 proxy in DigitalOcean and autoconfigure the Burp proxy settings to route all traffic through the droplet
This Burp Suite extension allows for the automatic creation and deletion of an upstream SOCKS5 proxy on popular cloud services.
A Burp Suite extension that integrates OpenAI's GPT to perform an additional passive scan for discovering highly bespoke vulnerabilities and enables running traffic-based analysis of any type.
Obtain GraphQL API schema even if the introspection is disabled
An incredibly fast proxy checker & IP rotator with ease.
A Proof of Concept for demonstrating Task hijacking in Android using an attacker and a victim app.
This repository is for adding custom header extension developed for medium blog.
PoC for Nginx 0.6.18 - 1.20.0 Memory Overwrite Vulnerability CVE-2021-23017
Static analysis tool for Android/iOS apps focusing on security issues outside the source code
Generates target specific word lists for Fuzzing with fuff
A list of public penetration test reports published by several consulting firms and academic security groups.
Subdomains-enumeration, subdomain-takeover monitoring api and S3 bucket scanner.
CVE-2021-40438 Apache <= 2.4.48 SSRF exploit
Self-hosted passive subdomain continous monitoring tool.
Try to find the origin IP of a webapp protected by Cloudflare.
Linux enumeration tool for pentesting and CTFs with verbosity levels
XRCross is a Reconstruction, Scanner, and a tool for penetration / BugBounty testing. This tool was built to test (XSS|SSRF|CORS|SSTI|IDOR|RCE|LFI|SQLI) vulnerabilities
Stuff after reverse engineering DUO's mobile app.
rcslab / duo-cli
Forked from revalo/duo-bypassDuo Command Line App