A Burp Suite plugin designed for automated fuzz testing of file upload vulnerabilities with over 500 payloads.
Scans remote JavaScript files with Trufflehog + Semgrep to detect leaked secrets.
A Bash script for automated nuclei dast scanning by using passive urls.
An automated GitHub Actions-based crawler that fetches and updates public scopes from popular bug bounty platforms.
Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services.
A powerful automated tool for penetration testers and ethical hackers to detect security vulnerabilities using Google Dorks.
Aether is a revolutionary XSS toolkit for modern pentesting and bug bounty hunting.
Scans for indications of XSS, Oracle SQLi, and filters out MySQL responses.
This repository updates latest Bug Bounty medium writeups every 10 minutes, providing valuable insights for security researchers.
LLM-powered agent for automated Google Dorking in bug hunting & pentesting.