Tools collection from intigriti's blog
-
https://github.com/gwen001/pentest-tools/blob/master/dnsexpire.py Fetch exp time of host
- https://github.com/Dheerajmadhukar/4-ZERO-3
- https://github.com/lobuhi/byp4xx
- https://twitter.com/ADITYASHENDE17/status/1329984885721686017
- https://github.com/intrudir/403fuzzer
- https://github.com/vavkamil/XFFenum/
- https://github.com/BlackFan/cspp-tools
- https://github.com/raverrr/plution
- https://github.com/dwisiswant0/ppfuzz
- https://github.com/detectify/page-fetch
- https://github.com/KathanP19/protoscan
- https://github.com/msrkp/PPScan
- https://github.com/redcode-labs/UnChain
- https://gist.github.com/zPrototype/b211ae91e2b082420c350c28b6674170
- https://github.com/0xNanda/Oralyzer
- https://twitter.com/0xAsm0d3us/status/1251816760971612160
- https://github.com/Naategh/dom-red
- https://github.com/B3nac/bXSSRequest Paylaod spray on urls
- https://github.com/neex/1u.ms
- https://github.com/knassar702/lorsrf ssrf via TLS
- https://github.com/jmdx/TLS-poison/
- https://github.com/random-robbie/redirector
- https://github.com/michaelben6/SSRFire
- https://twitter.com/Random_Robbie/status/1260663788434579457
- https://twitter.com/HusseiN98D/status/1258217821693190154
- https://github.com/KathanP19/gaussrf
- http://1u.ms/
- https://github.com/teknogeek/ssrf-sheriff
- https://github.com/daeken/httprebind Automatic tool for DNS rebinding-based SSRF
- https://github.com/Damian89/extended-ssrf-search
- https://github.com/In3tinct/See-SURF
- https://github.com/daeken/SSRFTest
- https://github.com/riramar/h2rs
- https://xsswingman.com/blog/posts/announcing-wingman/
- https://github.com/anshumanpattnaik/http-request-smuggling
- https://github.com/gwen001/pentest-tools/blob/master/smuggler.py
- https://github.com/Shivangx01b/CorsMe
- https://github.com/s0md3v/Corsy
- https://github.com/laconicwolf/cors-scanner
- https://github.com/praetorian-inc/trident
- https://github.com/ReverendThing/Carnivore
- https://github.com/lazytools/sshchecker
- https://github.com/optiv/Talon
- https://github.com/assetnote/batchql
- https://graphql-dashboard.herokuapp.com/
- https://blog.doyensec.com/2020/03/26/graphql-scanner.html
- https://github.com/molly/gh-dork
- https://github.com/deletescape/goop
- https://github.com/GONZOsint/gitrecon
- https://github.com/ldionmarcil/gitlab-unauth-parser
- https://github.com/PaperMtn/gitlab-watchman
- https://github.com/PaperMtn/github-watchman
- https://github.com/liamg/gitjacker
- https://github.com/SAP/credential-digger
- https://github.com/Talkaboutcybersecurity/GitMonitor
- https://github.com/d1vious/git-wild-hunt
- https://github.com/filtration/pullit
- https://gitlab.com/gitlab-com/gl-security/gl-redteam/token-hunter
- https://github.com/cve-search/git-vuln-finder
- https://twitter.com/gwendallecoguic/status/1191418487606071297
- https://github.com/hisxo/gitGraber