Pinned Repositories
assetfinder
Find domains and subdomains related to a given domain
bugbounty-cheatsheet
A list of interesting payloads, tips and tricks.
bxss
certasset
Takes ip range, Scan all open SSL Certs, Grab Cnames
CollabOzark
CollabOzark is a simple tool which helps the researchers track SSRF, RCE, Blind XSS, XXE, External Resource Access payloads triggers.
cryptocat-android
Cryptocat for Android. Easy to use encrypted instant messaging.
domained
Multi Tool Subdomain Enumeration
gmapsapiscanner
PareshParmar's Repositories
PareshParmar/bugbounty-cheatsheet
A list of interesting payloads, tips and tricks.
PareshParmar/certasset
Takes ip range, Scan all open SSL Certs, Grab Cnames
PareshParmar/assetfinder
Find domains and subdomains related to a given domain
PareshParmar/bxss
PareshParmar/CollabOzark
CollabOzark is a simple tool which helps the researchers track SSRF, RCE, Blind XSS, XXE, External Resource Access payloads triggers.
PareshParmar/cryptocat-android
Cryptocat for Android. Easy to use encrypted instant messaging.
PareshParmar/domained
Multi Tool Subdomain Enumeration
PareshParmar/gmapsapiscanner
PareshParmar/html-poc
Proof of concept code for client-side vulnerabilities
PareshParmar/Insecure-Firebase-Exploit
A simple Python Exploit to Write Data to Insecure/vulnerable firebase databases! Commonly found inside Mobile Apps. If the owner of the app have set the security rules as true for both "read" & "write" an attacker can probably dump database and write his own data to firebase db.
PareshParmar/JSONBee
A ready to use JSONP endpoints/payloads to help bypass content security policy of different websites.
PareshParmar/karma_v2
β‘·β πππππ ππΈβ β’Ύ is a Passive Open Source Intelligence (OSINT) Automated Rconnaissance (framework)
PareshParmar/Pyrebase
A simple python wrapper for the Firebase API.
PareshParmar/secretz
secretz, minimizing the large attack surface of Travis CI
PareshParmar/Serpico
SimplE RePort wrIting and COllaboration tool
PareshParmar/shuffledns
shuffleDNS is a wrapper around massdns written in go that allows you to enumerate valid subdomains using active bruteforce as well as resolve subdomains with wildcard handling and easy input-output support.
PareshParmar/slothy
Open source information gathering tool from publicly available sites against a target domain
PareshParmar/sublert
Sublert is a security and reconnaissance tool which leverages certificate transparency to automatically monitor new subdomains deployed by specific organizations and issued TLS/SSL certificate.
PareshParmar/TravisLeaks
A tool to find sensitive keys and passwords in Travis logs
PareshParmar/WordLists-20111129
A lists of words based on common web directory and file names lists of words based on common web directory and file names. These wordlists are for Web security testing purpose.
PareshParmar/xray
XRay is a tool for recon, mapping and OSINT gathering from public networks.