Pinned Repositories
amass-prime
crlfuzz
A fast tool to scan CRLF vulnerability written in Go
dalfox
🌘🦊 DalFox(Finder Of XSS) / Parameter Analysis and XSS Scanning tool based on golang
log4j-scan
A fully automated, accurate, and extensive scanner for finding log4j RCE CVE-2021-44228
meg-with-fff-output
Fetch many paths for many hosts - without killing the hosts
missing-cve-nuclei-templates
Daily updated list of missing CVEs in nuclei templates official repository. Mainly built for bug bounty, but useful for penetration tests and vulnerability assessments too.
OneListForAll
Rockyou for web fuzzing
WAF-bypass-xss-payloads
XSS payloads for bypassing WAF. This repository is updating continuously.
wordlists-2
Real-world infosec wordlists, updated regularly
gprime31's Repositories
gprime31/ctfr
Abusing Certificate Transparency logs for getting HTTPS websites subdomains.
gprime31/DNSaxfr
Shell script for testing DNS zone transfer (AXFR query) on domains and subdomains recursively.
gprime31/extended-ssrf-search
Smart ssrf scanner using different methods like parameter brute forcing in post and get...
gprime31/LiveTargetsFinder
Generates lists of live hosts and URLs for targeting, automating the usage of MassDNS, Masscan and nmap to filter out unreachable hosts and gather service information
gprime31/wfuzz
Web application fuzzer
gprime31/403bypasser
automate the procedure of 403 response code bypass
gprime31/assetfinder
Find domains and subdomains related to a given domain
gprime31/Bug-Bounty-Oneliners
Oneliners curated from my experience and from the internet
gprime31/DeadDNS
DNS hijacking via dead records automation tool
gprime31/dnSpy
.NET debugger and assembly editor
gprime31/fonts
Patched fonts for Powerline users.
gprime31/fresh.py
An efficient multi-threaded DNS resolver validator
gprime31/GadgetProbe
Probe endpoints consuming Java serialized objects to identify classes, libraries, and library versions on remote Java classpaths.
gprime31/gf
A wrapper around grep, to help you grep for things
gprime31/jaeles-plugins
Default plugins for Jaeles Scanner
gprime31/jwt-key-id-injector
Simple python script to check against hypothetical JWT vulnerability.
gprime31/mildew
Dotmil subdomain discovery tool that scrapes domains from official DoD website directories and certificate transparency logs
gprime31/MySQL-Brute
Brute force a single MySQL user with a wordlist.
gprime31/NoSQLMap
Automated NoSQL database enumeration and web application exploitation tool.
gprime31/NoXss
Faster xss scanner,support reflected-xss and dom-xss
gprime31/scan-tools
gprime31/shapeshifter
GraphQL security testing tool
gprime31/sqli-py
SQLiPy is a Python plugin for Burp Suite that integrates SQLMap using the SQLMap API.
gprime31/ssrf-king
SSRF plugin for burp Automates SSRF Detection in all of the Request
gprime31/Striker
Striker is an offensive information and vulnerability scanner.
gprime31/sublert
Sublert is a security and reconnaissance tool which leverages certificate transparency to automatically monitor new subdomains deployed by specific organizations and issued TLS/SSL certificate.
gprime31/TIDoS-Framework
The Offensive Manual Web Application Penetration Testing Framework.
gprime31/urlbrute
Directory/Subdomain scanner developed in GoLang.
gprime31/viewgen
viewgen is a ViewState tool capable of generating both signed and encrypted payloads with leaked validation keys
gprime31/XSScope
XSScope is one of the most powerful and advanced GUI Framework for Modern Browser exploitation via XSS.