LogoAISecKit
  • Search
  • Collection
  • Category
  • Tag
  • Blog
  • Pricing
  • Submit
LogoAISecKit

Newsletter

Join the Community

Subscribe to our newsletter for the latest news and updates

LogoAISecKit

Curated directory of 1700+ AI tools, models, frameworks, MCP servers, and cybersecurity resources

GitHub
Product
  • Search
  • Collection
  • Category
  • Tag
Resources
  • Blog
  • Pricing
  • Submit
Company
  • About Us
  • Privacy Policy
  • Terms of Service
  • Sitemap
Copyright © 2026 All Rights Reserved.
Sponsored Resources
  1. Home
  2. Category
  3. Phantom
icon of Phantom

Phantom

A browser extension for SRC vulnerability mining, collecting sensitive information and suspicious clues from web pages.

Visit Website
image for Phantom
Visit Website

Introduction

Phantom

Phantom is a browser extension designed for SRC vulnerability mining, focusing on collecting sensitive information and suspicious clues from web pages. It supports various scanning methods and features:

Key Features:
  • Basic Scanning: Automatically extracts APIs, URLs, domain names, emails, phone numbers, paths, parameters, comments, and various tokens/keys from the page.
  • Deep Recursive Scanning: Crawls multiple layers of links/resources with configurable concurrency and timeout settings, running in a new window without blocking current operations.
  • Batch API Testing: Allows testing of scanned items with GET/POST requests, with configurable concurrency and timeout, and supports result copying.
  • Export Capabilities: Results can be exported in JSON or Excel formats.
  • Custom Regex Support: Users can define custom regex patterns for better content extraction.
  • Enhanced Filtering: Built-in filters to reduce false positives for domains, emails, phone numbers, and APIs.
  • Automatic and Incremental Scanning: Silent scans triggered by page loads, DOM changes, or timed strategies, with real-time merging and display of results.
Benefits:
  • Efficiently identifies vulnerabilities and sensitive information on web pages.
  • User-friendly interface for easy navigation and operation.
  • Customizable settings to tailor the scanning process to specific needs.
Highlights:
  • Open-source project with community contributions.
  • Regular updates and improvements based on user feedback.
  • Designed for authorized security testing and self-assessment in SRC scenarios.
Back

Information

  • Publisher
    AISecKit
  • Websitegithub.com
  • Published date2025/10/19

Categories

  • DevSecOps Tools
  • Penetration Testing
  • Vulnerability Scanners

Tags

  • Security Auditing
  • Open Source
  • Incident Response
  • Vulnerability Scanning
  • API Security
  • Penetration Testing

More Products

E
Penetration TestingSecurity Training PlatformsAI Security Monitoring
Visit Website
icon of Exploiting AI

Exploiting AI

An introductory class on understanding AI security risks and mitigation strategies.

Prompt InjectionGenerative AIRed Team TestingData Poisoning
F
Input Validation & FilteringPenetration TestingAI Security Monitoring
Visit Website
icon of Folly

Folly

Open-source LLM Prompt-Injection and Jailbreaking Playground for testing LLM security vulnerabilities.

Prompt InjectionOpen SourceAPI SecuritySecurity TestingLLM Security+1
K
DevSecOps ToolsAI Security Monitoring
Visit Website
icon of Kereva LLM Code Scanner

Kereva LLM Code Scanner

Code scanner to check for issues in prompts and LLM calls

Code AssistantsPrompt EngineeringAI EthicsComplianceLLM+1