Pinned Repositories
-Google-Dorks-Cheat-Sheet-for-Hidden-Paths-Exposed-Files
Admin-Panel-Dorks
Find The Admin Panel & SQL Injection Endpoints, Using Google Dorks !!!
asn_checker
Check the autonomous system number (ASN) of an IP/URL.
bgf
A bash version of tomnomnom's gf.
BugBountyTemplate
A simple Cherry Tree template that can be used to organize bug bounties
dnsgen_wrapper
A bash wrapper for dnsgen to help place a file size limit on the alterations.
Gofetch
A simple script to take a list of URLs and fetch the status code for each URL
reverseme
A quick reference script that can easily display reverse shells for different languages.
statusparser
Retrive the status codes from a list of URLs
subseeker
A sub-domain enumeration tool
DFC302's Repositories
DFC302/-Google-Dorks-Cheat-Sheet-for-Hidden-Paths-Exposed-Files
DFC302/Admin-Panel-Dorks
Find The Admin Panel & SQL Injection Endpoints, Using Google Dorks !!!
DFC302/AI-Red-Teaming-Playground-Labs
AI Red Teaming playground labs to run AI Red Teaming trainings including infrastructure.
DFC302/Apache-Tomcat-Pentesting
Apache Tomcat exploit and Pentesting guide for penetration tester
DFC302/API-documentation-Wordlist
A wordlist of API documentation endpoint used for fuzzing web application APIs.
DFC302/asn
ASN / RPKI validity / BGP stats / IPv4v6 / Prefix / URL / ASPath / Organization / IP reputation / IP geolocation / IP fingerprinting / Network recon / lookup API server / Web traceroute server
DFC302/BackupFinder
BackupFinder discovers backup files on web servers by generating intelligent patterns.
DFC302/cai
Cybersecurity AI (CAI), an open Bug Bounty-ready Artificial Intelligence
DFC302/contexter
Contexter - A secondary context path traversal / server-side parameter pollution testing tool written in Python 3
DFC302/eval_villain
A Firefox Web Extension to improve the discovery of DOM XSS.
DFC302/FileDropper
FileDropper is a Burp Suite extension that allows pentesters and security researchers to quickly load the contents of a file into HTTP requests or responses. With just a few clicks from the context menu, you can insert raw or Base64-encoded data at your cursor position or replace selected text, streamlining testing workflows and payload injection.
DFC302/gf
A wrapper around grep, to help you grep for things
DFC302/Gf-Patterns
GF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic, interesting Subs) parameters grep
DFC302/gowitness
🔍 gowitness - a golang, web screenshot utility using Chrome Headless
DFC302/gsnw
DFC302/gungnir
CT Log Scanner
DFC302/hack_tips
DFC302/InterceptAllResponses
DFC302/llm-hacking-database
This repository contains various attack against Large Language Models.
DFC302/mapperplus
MapperPlus facilitates the extraction of source code from a collection of targets that have publicly exposed .js.map files.
DFC302/Path-Traversal-Scanner
DFC302/payloads-redteam
Payloads for AI Red Teaming and beyond
DFC302/pdFExploits
DFC302/recollapse
REcollapse is a helper tool for black-box regex fuzzing to bypass validations and discover normalizations in web applications
DFC302/RESTer
A REST client for almost any web service (Firefox and Chrome Extension)
DFC302/shortscan
An IIS short filename enumeration tool
DFC302/SQLi-Scanner
DFC302/Subdominator
The Internets #1 Subdomain Takeover Tool
DFC302/vuln-bank
A deliberately vulnerable banking application designed for practicing Security Testing of Web App, APIs, AI integrated App and secure code reviews. Features common vulnerabilities found in real-world applications, making it an ideal platform for security professionals, developers, and enthusiasts to learn pentesting and secure coding practices.
DFC302/wpprobe
A fast WordPress plugin enumeration tool