Tools

JSLUICE -> https://www.youtube.com/watch?v=BnQBp83YbqY&t=1310sarrow-up-right

notify => https://www.youtube.com/watch?v=wP3n1JnqtMU&pp=ygURcmVjb24gbWV0aG9kb2xvZ3k%3Darrow-up-right

nuclai =>

https://www.youtube.com/watch?v=k10mHT_BLzc&list=PL4du0U9bYcLZD7vygkOltT2KAreOjhBJjarrow-up-right

3klector https://github.com/eslam3kl/3klectorarrow-up-right

crtfinder https://github.com/eslam3kl/crtfinderarrow-up-right

Subfinder https://github.com/projectdiscovery/subfinderarrow-up-right

Assetfinder https://github.com/tomnomnom/assetfinderarrow-up-right

Altdns https://github.com/infosec-au/altdnsarrow-up-right

Dirsearch https://github.com/maurosoria/dirsearcharrow-up-right

Httpx https://github.com/projectdiscovery/httpxarrow-up-right

Waybackurls https://github.com/tomnomnom/waybackurlsarrow-up-right

Gau https://github.com/lc/gauarrow-up-right

Git-hound https://github.com/tillson/git-houndarrow-up-right

Gf https://github.com/tomnomnom/gfarrow-up-right

Gf-pattern https://github.com/1ndianl33t/Gf-Patternsarrow-up-right

Nuclei https://github.com/projectdiscovery/nucleiarrow-up-right

Nuclei-templets https://github.com/projectdiscovery/nuclei-templatesarrow-up-right

Subjack https://github.com/haccer/subjackarrow-up-right

SSRFmaparrow-up-right - Automatic SSRF fuzzer and exploitation tool

Gopherusarrow-up-right - This tool generates gopher link for exploiting SSRF and gaining RCE in various servers

ground-controlarrow-up-right - A collection of scripts that run on my web server. Mainly for debugging SSRF, blind XSS, and XXE vulnerabilities.

SSRFirearrow-up-right - An automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirects

httprebindarrow-up-right - Automatic tool for DNS rebinding-based SSRF attacks

ssrf-sheriffarrow-up-right - A simple SSRF-testing sheriff written in Go

B-XSSRFarrow-up-right - Toolkit to detect and keep track on Blind XSS, XXE & SSRF

extended-ssrf-searcharrow-up-right - Smart ssrf scanner using different methods like parameter brute forcing in post and get...

gaussrfarrow-up-right - Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl and Filter Urls With OpenRedirection or SSRF Parameters.

ssrfDetectorarrow-up-right - Server-side request forgery detector

grafana-ssrfarrow-up-right - Authenticated SSRF in Grafana

sentrySSRFarrow-up-right - Tool to searching sentry config on page or in javascript files and check blind SSRF

lorsrfarrow-up-right - Bruteforcing on Hidden parameters to find SSRF vulnerability using GET and POST Methods

singularityarrow-up-right - A DNS rebinding attack framework.

whonowarrow-up-right - A "malicious" DNS server for executing DNS Rebinding attacks on the fly (public instance running on rebind.network:53)

dns-rebind-toolkitarrow-up-right - A front-end JavaScript toolkit for creating DNS rebinding attacks.

drefarrow-up-right - DNS Rebinding Exploitation Framework

rbndrarrow-up-right - Simple DNS Rebinding Service

httprebindarrow-up-right - Automatic tool for DNS rebinding-based SSRF attacks

dnsFookuparrow-up-right - DNS rebinding toolkit

SQL Injection

sqlmaparrow-up-right - Automatic SQL injection and database takeover tool

NoSQLMaparrow-up-right - Automated NoSQL database enumeration and web application exploitation tool.

SQLiScannerarrow-up-right - Automatic SQL injection with Charles and sqlmap api

SleuthQLarrow-up-right - Python3 Burp History parsing tool to discover potential SQL injection points. To be used in tandem with SQLmap.

mssqlproxyarrow-up-right - mssqlproxy is a toolkit aimed to perform lateral movement in restricted environments through a compromised Microsoft SQL Server via socket reuse

sqli-hunterarrow-up-right - SQLi-Hunter is a simple HTTP / HTTPS proxy server and a SQLMAP API wrapper that makes digging SQLi easy.

waybackSqliScannerarrow-up-right - Gather urls from wayback machine then test each GET parameter for sql injection.

ESCarrow-up-right - Evil SQL Client (ESC) is an interactive .NET SQL console client with enhanced SQL Server discovery, access, and data exfiltration features.

mssqli-duetarrow-up-right - SQL injection script for MSSQL that extracts domain users from an Active Directory environment based on RID bruteforcing

burp-to-sqlmaparrow-up-right - Performing SQLInjection test on Burp Suite Bulk Requests using SQLMap

BurpSQLTruncSannerarrow-up-right - Messy BurpSuite plugin for SQL Truncation vulnerabilities.

andorarrow-up-right - Blind SQL Injection Tool with Golang

Blinderarrow-up-right - A python library to automate time-based blind SQL injection

sqlivarrow-up-right - massive SQL injection vulnerability scanner

nosqliarrow-up-right - NoSql Injection CLI tool, for finding vulnerable websites using MongoDB.

XSS Injection

XSStrikearrow-up-right - Most advanced XSS scanner.

xssor2arrow-up-right - XSS'OR - Hack with JavaScript.

xsscrapyarrow-up-right - XSS spider - 66/66 wavsep XSS detected

sleepy-puppyarrow-up-right - Sleepy Puppy XSS Payload Management Framework

ezXSSarrow-up-right - ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.

xsshunterarrow-up-right - The XSS Hunter service - a portable version of XSSHunter.comarrow-up-right

dalfoxarrow-up-right - DalFox(Finder Of XSS) / Parameter Analysis and XSS Scanning tool based on golang

xsserarrow-up-right - Cross Site "Scripter" (aka XSSer) is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications.

XSpeararrow-up-right - Powerfull XSS Scanning and Parameter analysis tool&gem

weaponised-XSS-payloadsarrow-up-right - XSS payloads designed to turn alert(1) into P1

tracyarrow-up-right - A tool designed to assist with finding all sinks and sources of a web application and display these results in a digestible manner.

ground-controlarrow-up-right - A collection of scripts that run on my web server. Mainly for debugging SSRF, blind XSS, and XXE vulnerabilities.

xssValidatorarrow-up-right - This is a burp intruder extender that is designed for automation and validation of XSS vulnerabilities.

JSShellarrow-up-right - An interactive multi-user web JS shell

bXSSarrow-up-right - bXSS is a utility which can be used by bug hunters and organizations to identify Blind Cross-Site Scripting.

docemarrow-up-right - Uility to embed XXE and XSS payloads in docx,odt,pptx,etc (OXML_XEE on steroids)

XSS-Radararrow-up-right - XSS Radar is a tool that detects parameters and fuzzes them for cross-site scripting vulnerabilities.

BruteXSSarrow-up-right - BruteXSS is a tool written in python simply to find XSS vulnerabilities in web application.

findom-xssarrow-up-right - A fast DOM based XSS vulnerability scanner with simplicity.

domdigarrow-up-right - DOM XSS scanner for Single Page Applications

femidaarrow-up-right - Automated blind-xss search for Burp Suite

B-XSSRFarrow-up-right - Toolkit to detect and keep track on Blind XSS, XXE & SSRF

domxssscannerarrow-up-right - DOMXSS Scanner is an online tool to scan source code for DOM based XSS vulnerabilities

xsshunter_clientarrow-up-right - Correlated injection proxy tool for XSS Hunter

extended-xss-searcharrow-up-right - A better version of my xssfinder tool - scans for different types of xss on a list of urls.

xssmaparrow-up-right - XSSMap 是一款基于 Python3 开发用于检测 XSS 漏洞的工具

XSSConarrow-up-right - XSSCon: Simple XSS Scanner tool

BitBlinderarrow-up-right - BurpSuite extension to inject custom cross-site scripting payloads on every form/request submitted to detect blind XSS vulnerabilities

XSSOauthPersistencearrow-up-right - Maintaining account persistence via XSS and Oauth

shadow-workersarrow-up-right - Shadow Workers is a free and open source C2 and proxy designed for penetration testers to help in the exploitation of XSS and malicious Service Workers (SW)

rexsserarrow-up-right - This is a burp plugin that extracts keywords from response using regexes and test for reflected XSS on the target scope.

xss-flarearrow-up-right - XSS hunter on cloudflare serverless workers.

Xss-Sql-Fuzzarrow-up-right - burpsuite 插件对GP所有参数(过滤特殊参数)一键自动添加xss sql payload 进行fuzz

vaya-ciego-nenarrow-up-right - Detect, manage and exploit Blind Cross-site scripting (XSS) vulnerabilities.

dom-based-xss-finderarrow-up-right - Chrome extension that finds DOM based XSS vulnerabilities

XSSTerminalarrow-up-right - Develop your own XSS Payload using interactive typing

xss2pngarrow-up-right - PNG IDAT chunks XSS payload generator

XSSwaggerarrow-up-right - A simple Swagger-ui scanner that can detect old versions vulnerable to various XSS attacks

XXE Injection

ground-controlarrow-up-right - A collection of scripts that run on my web server. Mainly for debugging SSRF, blind XSS, and XXE vulnerabilities.

dtd-finderarrow-up-right - List DTDs and generate XXE payloads using those local DTDs.

docemarrow-up-right - Uility to embed XXE and XSS payloads in docx,odt,pptx,etc (OXML_XEE on steroids)

xxeservarrow-up-right - A mini webserver with FTP support for XXE payloads

xxexploiterarrow-up-right - Tool to help exploit XXE vulnerabilities

B-XSSRFarrow-up-right - Toolkit to detect and keep track on Blind XSS, XXE & SSRF

XXEinjectorarrow-up-right - Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.

oxml_xxearrow-up-right - A tool for embedding XXE/XML exploits into different filetypes

metahttparrow-up-right - A bash script that automates the scanning of a target network for HTTP resources through XXE


Passwords

Secrets

Git

Last updated