Pinned Repositories
Bash-scripts
A collection of random one off bash scripts that are probably only useful to me
bookmarklets
Bug hunting bookmarklets
CVEs
dantiburl
@tomnomnom's anti-burl with some added functionality
JSvarXSSTester
A tool entirely written with ChatGPT that takes URLS on stdin, extracts javascript variable names from the webpages, then uses them as query parameters 5 at a time checking the response bodies for reflections.
mutiny
A tool for security research and bug bounty that uses a headless browser to wrap common functions and report on their usage.
onpage
Takes URLs on stdin and a regex as an argument, returns URLs to pages where a match was found
plution
Prototype pollution scanner using headless chrome
posrare
"A tool for security researchers and bug bounty hunters, designed to find and prioritize URLs based on the uniqueness and entropy of words in a specified position in the URL path.
Zap
Owasp Zap Scripts
raverrr's Repositories
raverrr/plution
Prototype pollution scanner using headless chrome
raverrr/posrare
"A tool for security researchers and bug bounty hunters, designed to find and prioritize URLs based on the uniqueness and entropy of words in a specified position in the URL path.
raverrr/dantiburl
@tomnomnom's anti-burl with some added functionality
raverrr/onpage
Takes URLs on stdin and a regex as an argument, returns URLs to pages where a match was found
raverrr/JSvarXSSTester
A tool entirely written with ChatGPT that takes URLS on stdin, extracts javascript variable names from the webpages, then uses them as query parameters 5 at a time checking the response bodies for reflections.
raverrr/Zap
Owasp Zap Scripts
raverrr/mutiny
A tool for security research and bug bounty that uses a headless browser to wrap common functions and report on their usage.
raverrr/Bash-scripts
A collection of random one off bash scripts that are probably only useful to me
raverrr/bookmarklets
Bug hunting bookmarklets
raverrr/CVEs
raverrr/goshuf
Takes input on stdin, shuffles it, spits it back out
raverrr/one-off-tools
poorly coded but functional 'one-off' scripts and tools written in Go
raverrr/tinc
Script to aid in timing based hacks that require an interger is to be incremented on each request
raverrr/extcount
take big lists of URLs, return extentions by frequency
raverrr/xsssvg
testing