massito's repositories

formcrawler

This script Crawl the website and find the urls that contains html forms.

Stargazers:0Issues:0Issues:0

shortscan

An IIS short filename enumeration tool

License:MITStargazers:0Issues:0Issues:0

vulnerability-research

This repository contains information on the CVEs I found.

Stargazers:0Issues:0Issues:0

dummy-cloudapp

files for cloudapp.net azure subdomain takeover PoC

Stargazers:0Issues:0Issues:0

scodescanner

SCodeScanner stands for Source Code scanner where the user can scans the source code for finding the Critical Vulnerabilities.

License:GPL-3.0Stargazers:0Issues:0Issues:0

CVE-T4PDF

CVEs and Techniques used PDF as an attack vector.

License:MITStargazers:0Issues:0Issues:0

source-founder

check if the source code compressed and uploaded to the server by mistake

Stargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

4-ZERO-3

403/401 Bypass Methods + Bash Automation + Your Support ;)

License:MITStargazers:0Issues:0Issues:0

log4j-scan

A fully automated, accurate, and extensive scanner for finding log4j RCE CVE-2021-44228

License:MITStargazers:0Issues:0Issues:0

CVE-2021-44228-PoC-log4j-bypass-words

🐱‍💻 ✂️ 🤬 CVE-2021-44228 - LOG4J Java exploit - A trick to bypass words blocking patches

Stargazers:0Issues:0Issues:0

webapp-wordlists

This repository contains wordlists for each versions of common web applications and content management systems (CMS). Each version contains a wordlist of all the files directories for this version.

Stargazers:0Issues:0Issues:0

reconftw

reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities

License:GPL-3.0Stargazers:0Issues:0Issues:0

getJS

A tool to fastly get all javascript sources/files

Stargazers:0Issues:0Issues:0

subjack

Subdomain Takeover tool written in Go

License:Apache-2.0Stargazers:0Issues:0Issues:0

HTTPLeaks

HTTPLeaks - All possible ways, a website can leak HTTP requests

License:BSD-2-ClauseStargazers:0Issues:0Issues:0

SecretFinder

SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files

License:GPL-3.0Stargazers:0Issues:0Issues:0

WAF-bypass-xss-payloads

XSS payloads for bypassing WAF. This repository is updating continuously.

Stargazers:0Issues:0Issues:0

open-redirector

A small and efficient tool to find open redirect vulnerabilities.

License:MITStargazers:0Issues:0Issues:0

Mind-Maps

Mind-Maps of Several Things

Stargazers:0Issues:0Issues:0

Bug-Bounty-Wordlists

A repository that includes all the important wordlists used while bug hunting.

License:MITStargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

x8-Burp

Hidden parameters discovery suite

License:GPL-3.0Stargazers:0Issues:0Issues:0

bypass-403

A simple script just made for self use for bypassing 403

Stargazers:0Issues:0Issues:0

client-side-prototype-pollution

Prototype Pollution and useful Script Gadgets

Stargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

ds_store_exp

A .DS_Store file disclosure exploit. It parses .DS_Store file and downloads files recursively.

Stargazers:0Issues:0Issues:0

sqlscan

A small and an efficient tool to find SQL injection vulnerability in a websites.

License:MITStargazers:0Issues:0Issues:0

bruteforce-lists

Some files for bruteforcing certain things.

License:Apache-2.0Stargazers:0Issues:0Issues:0