All Projects → Bxss → Similar Projects or Alternatives

716 Open source projects that are alternatives of or similar to Bxss

Defaultcreds Cheat Sheet
One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️
Stars: ✭ 1,949 (+488.82%)
Mutual labels:  infosec, blueteam, bugbounty
PastebinMarkdownXSS
XSS in pastebin.com and reddit.com via unsanitized markdown output
Stars: ✭ 84 (-74.62%)
Mutual labels:  xss, infosec, bugbounty
Android Reports And Resources
A big list of Android Hackerone disclosed reports and other resources.
Stars: ✭ 590 (+78.25%)
Mutual labels:  infosec, xss, bugbounty
Megplus
Automated reconnaissance wrapper — TomNomNom's meg on steroids. [DEPRECATED]
Stars: ✭ 268 (-19.03%)
Mutual labels:  infosec, bugbounty
Go Dork
The fastest dork scanner written in Go.
Stars: ✭ 274 (-17.22%)
Mutual labels:  infosec, bugbounty
Can I Take Over Xyz
"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.
Stars: ✭ 2,808 (+748.34%)
Mutual labels:  infosec, bugbounty
tugarecon
Pentest: Subdomains enumeration tool for penetration testers.
Stars: ✭ 142 (-57.1%)
Mutual labels:  infosec, bugbounty
Hetty
Hetty is an HTTP toolkit for security research.
Stars: ✭ 3,596 (+986.4%)
Mutual labels:  infosec, bugbounty
rejig
Turn your VPS into an attack box
Stars: ✭ 33 (-90.03%)
Mutual labels:  infosec, bugbounty
Bugbounty Cheatsheet
A list of interesting payloads, tips and tricks for bug bounty hunters.
Stars: ✭ 3,644 (+1000.91%)
Mutual labels:  infosec, bugbounty
Astra
Astra is a tool to find URLs and secrets inside a webpage/files
Stars: ✭ 187 (-43.5%)
Mutual labels:  infosec, bugbounty
Asnlookup
Leverage ASN to look up IP addresses (IPv4 & IPv6) owned by a specific organization for reconnaissance purposes, then run port scanning on it.
Stars: ✭ 163 (-50.76%)
Mutual labels:  infosec, bugbounty
Smogcloud
Find cloud assets that no one wants exposed 🔎 ☁️
Stars: ✭ 168 (-49.24%)
Mutual labels:  infosec, blueteam
Application Security Engineer Interview Questions
Some of the questions which i was asked when i was giving interviews for Application/Product Security roles. I am sure this is not an exhaustive list but i felt these questions were important to be asked and some were challenging to answer
Stars: ✭ 267 (-19.34%)
Mutual labels:  infosec, xss
Basecrack
Decode All Bases - Base Scheme Decoder
Stars: ✭ 196 (-40.79%)
Mutual labels:  infosec, bugbounty
h1-search
Tool that will request the public disclosures on a specific HackerOne program and show them in a localhost webserver.
Stars: ✭ 58 (-82.48%)
Mutual labels:  infosec, bugbounty
vaf
Vaf is a cross-platform very advanced and fast web fuzzer written in nim
Stars: ✭ 294 (-11.18%)
Mutual labels:  xss, bugbounty
flydns
Related subdomains finder
Stars: ✭ 29 (-91.24%)
Mutual labels:  infosec, bugbounty
Contact.sh
An OSINT tool to find contacts in order to report security vulnerabilities.
Stars: ✭ 216 (-34.74%)
Mutual labels:  infosec, bugbounty
dora
Find exposed API keys based on RegEx and get exploitation methods for some of keys that are found
Stars: ✭ 229 (-30.82%)
Mutual labels:  infosec, bugbounty
lit-bb-hack-tools
Little Bug Bounty & Hacking Tools⚔️
Stars: ✭ 180 (-45.62%)
Mutual labels:  infosec, bugbounty
adalanche
Active Directory ACL Visualizer and Explorer - who's really Domain Admin?
Stars: ✭ 862 (+160.42%)
Mutual labels:  infosec, blueteam
1earn
ffffffff0x 团队维护的安全知识框架,内容包括不仅限于 web安全、工控安全、取证、应急、蓝队设施部署、后渗透、Linux安全、各类靶机writup
Stars: ✭ 3,715 (+1022.36%)
Mutual labels:  infosec, blueteam
Subcert
Subcert is an subdomain enumeration tool, that finds all the subdomains from certificate transparency logs.
Stars: ✭ 58 (-82.48%)
Mutual labels:  infosec, bugbounty
Xxe Injection Payload List
🎯 XML External Entity (XXE) Injection Payload List
Stars: ✭ 304 (-8.16%)
Mutual labels:  infosec, bugbounty
Eagle
Multithreaded Plugin based vulnerability scanner for mass detection of web-based applications vulnerabilities
Stars: ✭ 85 (-74.32%)
Mutual labels:  xss, bugbounty
Slack Watchman
Monitoring your Slack workspaces for sensitive information
Stars: ✭ 159 (-51.96%)
Mutual labels:  infosec, blueteam
Proof Of Concepts
A little collection of fun and creative proof of concepts to demonstrate the potential impact of a security vulnerability.
Stars: ✭ 148 (-55.29%)
Mutual labels:  infosec, bugbounty
Crithit
Takes a single wordlist item and tests it one by one over a large collection of websites before moving onto the next. Create signatures to cross-check vulnerabilities over multiple hosts.
Stars: ✭ 182 (-45.02%)
Mutual labels:  infosec, bugbounty
Autosetup
Auto setup is a bash script compatible with Debian based distributions to install and setup necessary programs.
Stars: ✭ 140 (-57.7%)
Mutual labels:  infosec, bugbounty
H2csmuggler
HTTP Request Smuggling over HTTP/2 Cleartext (h2c)
Stars: ✭ 292 (-11.78%)
Mutual labels:  infosec, bugbounty
Qsfuzz
qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.
Stars: ✭ 201 (-39.27%)
Mutual labels:  infosec, bugbounty
Findom Xss
A fast DOM based XSS vulnerability scanner with simplicity.
Stars: ✭ 310 (-6.34%)
Mutual labels:  xss, bugbounty
Gitlab Watchman
Monitoring GitLab for sensitive data shared publicly
Stars: ✭ 127 (-61.63%)
Mutual labels:  infosec, blueteam
Cloudbrute
Awesome cloud enumerator
Stars: ✭ 268 (-19.03%)
Mutual labels:  infosec, bugbounty
fuzzmost
all manner of wordlists
Stars: ✭ 23 (-93.05%)
Mutual labels:  infosec, bugbounty
github-watchman
Monitoring GitHub for sensitive data shared publicly
Stars: ✭ 60 (-81.87%)
Mutual labels:  infosec, blueteam
py-scripts-other
A collection of some of my scripts
Stars: ✭ 79 (-76.13%)
Mutual labels:  infosec, bugbounty
xssfinder
Toolset for detecting reflected xss in websites
Stars: ✭ 105 (-68.28%)
Mutual labels:  xss, bugbounty
NIST-to-Tech
An open-source listing of cybersecurity technology mapped to the NIST Cybersecurity Framework (CSF)
Stars: ✭ 61 (-81.57%)
Mutual labels:  infosec, blueteam
magicRecon
MagicRecon is a powerful shell script to maximize the recon and data collection process of an objective and finding common vulnerabilities, all this saving the results obtained in an organized way in directories and with various formats.
Stars: ✭ 478 (+44.41%)
Mutual labels:  infosec, bugbounty
targets
A collection of over 5.1 million sub-domains and assets belonging to public bug bounty programs, compiled into a repo, for performing bulk operations.
Stars: ✭ 85 (-74.32%)
Mutual labels:  infosec, bugbounty
pyc2bytecode
A Python Bytecode Disassembler helping reverse engineers in dissecting Python binaries by disassembling and analyzing the compiled python byte-code(.pyc) files across all python versions (including Python 3.10.*)
Stars: ✭ 70 (-78.85%)
Mutual labels:  infosec, blueteam
urldedupe
Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations
Stars: ✭ 208 (-37.16%)
Mutual labels:  infosec, bugbounty
MurMurHash
This little tool is to calculate a MurmurHash value of a favicon to hunt phishing websites on the Shodan platform.
Stars: ✭ 79 (-76.13%)
Mutual labels:  infosec, blueteam
goverview
goverview - Get an overview of the list of URLs
Stars: ✭ 93 (-71.9%)
Mutual labels:  infosec, bugbounty
SuperLibrary
Information Security Library
Stars: ✭ 60 (-81.87%)
Mutual labels:  infosec, bugbounty
XSS-Payload-without-Anything
XSS Payload without Anything.
Stars: ✭ 74 (-77.64%)
Mutual labels:  xss, bugbounty
security-policy-specification-standard
This document proposes a way of standardising the structure, language, and grammar used in security policies.
Stars: ✭ 24 (-92.75%)
Mutual labels:  infosec, bugbounty
gwdomains
sub domain wild card filtering tool
Stars: ✭ 38 (-88.52%)
Mutual labels:  infosec, bugbounty
Blue-Team-Notes
You didn't think I'd go and leave the blue team out, right?
Stars: ✭ 899 (+171.6%)
Mutual labels:  infosec, blueteam
T1tl3
A simple python script which can check HTTP status of branch of URLs/Subdomains and grab URLs/Subdomain title
Stars: ✭ 14 (-95.77%)
Mutual labels:  infosec, bugbounty
Bootsy
Designed to be installed on a fresh install of raspbian on a raspberry pi, by combining Respounder (Responder detection) and Artillery (port and service spoofing) for network deception, this tool allows you to detect an attacker on the network quickly by weeding out general noisy alerts with only those that matter.
Stars: ✭ 33 (-90.03%)
Mutual labels:  infosec, blueteam
osmedeus-workflow
Community Workflow for the Osmedeus Engine that describes basic reconnaissance methodology for you to build your own
Stars: ✭ 26 (-92.15%)
Mutual labels:  infosec, bugbounty
aquatone
A Tool for Domain Flyovers
Stars: ✭ 43 (-87.01%)
Mutual labels:  infosec, bugbounty
S3scanner
Scan for open AWS S3 buckets and dump the contents
Stars: ✭ 1,319 (+298.49%)
Mutual labels:  infosec, bugbounty
Gf Secrets
Secret and/ credential patterns used for gf.
Stars: ✭ 96 (-71%)
Mutual labels:  infosec, bugbounty
dummyDLL
Utility for hunting UAC bypasses or COM/DLL hijacks that alerts on the exported function that was consumed.
Stars: ✭ 35 (-89.43%)
Mutual labels:  infosec, blueteam
diwa
A Deliberately Insecure Web Application
Stars: ✭ 32 (-90.33%)
Mutual labels:  xss, infosec
Pentesting
Misc. Public Reports of Penetration Testing and Security Audits.
Stars: ✭ 24 (-92.75%)
Mutual labels:  infosec, bugbounty
1-60 of 716 similar projects