proabiral's starred repositories

nuclei

Fast and customizable vulnerability scanner based on simple YAML based DSL.

nuclei-templates

Community curated list of templates for the nuclei engine to find security vulnerabilities.

Language:JavaScriptLicense:MITStargazers:8731Issues:200Issues:1456

rengine

reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous monitoring, backed by a database, and simple yet intuitive User Interface. reNgine makes it easy for penetration testers to gather reconnaissance with minimal configuration and with the help of reNgine's correlation, it just makes recon effortless.

Language:HTMLLicense:GPL-3.0Stargazers:7245Issues:143Issues:801

LinEnum

Scripted Local Linux Enumeration & Privilege Escalation Checks

Language:ShellLicense:MITStargazers:6844Issues:196Issues:29

GitDorker

A Python program to scrape secrets from GitHub through usage of a large repository of dorks.

pwncat

pwncat - netcat on steroids with Firewall, IDS/IPS evasion, bind and reverse shell, self-injecting shell and port forwarding magic - and its fully scriptable with Python (PSE)

Language:ShellLicense:MITStargazers:1749Issues:39Issues:49

puredns

Puredns is a fast domain resolver and subdomain bruteforcing tool that can accurately filter out wildcard subdomains and DNS poisoned entries.

Language:GoLicense:GPL-3.0Stargazers:1630Issues:25Issues:44

reflector

Burp plugin able to find reflected XSS on page in real-time while browsing on site

bruteforce-lists

Some files for bruteforcing certain things.

License:Apache-2.0Stargazers:1079Issues:34Issues:0

singularity

A DNS rebinding attack framework.

Language:JavaScriptLicense:MITStargazers:1010Issues:33Issues:35

leaky-paths

A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..etc. It could be used as a part of web content discovery, to scan passively for high-quality endpoints and quick-wins.

recollapse

REcollapse is a helper tool for black-box regex fuzzing to bypass validations and discover normalizations in web applications

Language:PythonLicense:MITStargazers:897Issues:14Issues:1

dnsgen

Generates combination of domain names from the provided input.

Language:PythonLicense:MITStargazers:818Issues:23Issues:13

can-i-take-over-dns

"Can I take over DNS?" — a list of DNS providers and how to claim (sub)domains via missing hosted zones

stunner

Stunner is a tool to test and exploit STUN, TURN and TURN over TCP servers.

Language:GoLicense:NOASSERTIONStargazers:731Issues:15Issues:17

wappalyzergo

A high performance go implementation of Wappalyzer Technology Detection Library

Language:GoLicense:MITStargazers:677Issues:26Issues:21

dtd-finder

List DTDs and generate XXE payloads using those local DTDs.

surf

Escalate your SSRF vulnerabilities on Modern Cloud Environments. `surf` allows you to filter a list of hosts, returning a list of viable SSRF candidates.

samlists

Free, libre, effective, and data-driven wordlists for all!

License:MITStargazers:513Issues:7Issues:0

TrustTrees

A Tool for DNS Delegation Trust Graphing

Language:PythonLicense:Apache-2.0Stargazers:398Issues:23Issues:22

kubernetes-learning-path

https://azure.microsoft.com/en-us/resources/kubernetes-learning-path/

batchql

GraphQL security auditing script with a focus on performing batch GraphQL queries and mutations

regulator

Automated learning of regexes for DNS discovery

template-generator

A simple variable based template editor using handlebarjs+strapdownjs. The idea is to use variables in markdown based files to easily replace the variables with content. Data is saved temporarily in local storage. PHP is only needed to generate the list of files in the dropdown of templates.

Language:JavaScriptLicense:MITStargazers:248Issues:9Issues:0

goaltdns

A permutation generation tool written in golang

Language:GoLicense:MITStargazers:202Issues:10Issues:4

dsieve

Filter and enrich a list of subdomains by level

Language:GoLicense:MITStargazers:186Issues:7Issues:4

Lilly

Tool to find the real IP behind CDNs/WAFs like cloudflare using passive recon by retrieving the favicon hash. For the same hash value, all the possible IPs, PORTs and SSL/TLS Certs are searched to validate the target in-scope.

Language:ShellLicense:MITStargazers:177Issues:9Issues:5

dnspy

Find subdomains and takeovers.

Language:PythonLicense:MITStargazers:80Issues:8Issues:0