webpentest
There are 31 repositories under webpentest topic.
thewhiteh4t/FinalRecon
All In One Web Recon
HalilDeniz/PathFinder
Web Path Finder
AngixBlack/Corscan
Advanced CORS Header Checker Tool with Vulnerability Detection and Bypass Attempts
J4FSec/HaccTheHub
Open source self-hosted cyber security learning platform
cyberstruggle/whitepass
Whitepass Bypass Whitelist/Ratelimit Implementations in Web Applications/APIs
txuswashere/pentesting
CyberSec Resources: FRAMEWORKS & STANDARDS; Pentesting Audits & Hacking; PURPLE TEAMING, AD, API, web, clouds, CTF, OSINT, Pentest tools, Network Security, Privilege escalation, Exploiting, Reversing, Secure Code, Bug Bounty, ...
Anof-cyber/pentest-recon
Web application pentesting recon
TorhamDev/Death-engine
A powerful recon tool
InfoSecWarrior/Subdomain-Takeovers
This repository discusses the subdomain takeover vulnerability and lists of services which are vulnerable to it. It also provides information, methodology and resources to perform subdomain takeover attacks.
defensahacker/viewstate-decoder
Small tool to decode ASP.NET __VIEWSTATE variable when doing webpentests
Serhatcck/hidden_fuzzer
Hidden Fuzzer is a URL fuzzing tool designed to uncover hidden paths and resources on web applications. It features multithreading, customizable HTTP headers, and request parameters for optimized performance.
Fadavvi/BurpPro-FastCrawler
The simplest way to integrate your subdomain enum outputs with Burp Pro (Fast Crawler)
austinsonger/sitemapsandrobotsaroundtheweb
Sitemaps and Robots.txt for websites around the world.
m3z0diac/spaceBox
a simple vulnerable web applications, gain access then capture the flag.
sanogotech/Vulnerable-Flask-App
Erlik 2 - Vulnerable-Flask-App
defensahacker/URLSUCKER
Sucks all embedded URLs from a given URI or file. Ideal to parse URLs from CSS or JavaScript (such as API calls, webservices, ;)
AngixBlack/gitools
shell script that automates the installation of essential bug bounty and web pentesting tools. It supports Linux and macOS
hansengianto/webpentestingtool
My Private Website Pentesting Tool
HarshilPatel007/webappsec
web application penetration testing and security notes.
krishealty/knockknock
A Simple Tool to gather information from any website, domain, sub-domain, DNS, links by enumeration with simple commands.
MedhatHassan/CyberTalents
The CyberTalents repository is a collection of solutions and write-ups for challenges sourced from the CyberTalents platform. Organized topic, this repository serves as a resource for cybersecurity enthusiasts seeking to enhance their skills and understanding of security concepts.
xpl0ited1/postMessageFinderBurpSuite
This extension allows you to detect implementations of postMessage function, addEventListener("message",function) event handler and onMessage function.
LulzFather/WebPentest-Framework
WebPentest Framework is made for hackers and penetration tester
mentesan/webtaz
Web pentest kickstarter
Pedram-G/Cybersecurity-Basics
Self-Study About Cybersecurity (Summary of My Learning )
raylan-oliveira/jsonAnalytic
jsonAnalytic - List all keys & all values in json
SaranCoder0/Web-Pentest-Notebook
A collaborative repository for web pentesting notes and tool commands. Contribute your knowledge to build a comprehensive resource for Web pentester, Bug bounty hunter, Ethical hacker and security professionals.
LSD00/webfuzz
A very fast webfuzzer, support encoders, working with raw requests
xnoncywer/adminfinder
Admin Finder Tool is a Python-based tool designed to help security professionals, penetration testers, and website administrators identify potentially sensitive admin areas on a website. The tool works by testing a list of common admin URL paths and checking if any of these return a 200 HTTP status code, indicating that they exist.
mo3giiza/PHP4Sec-Notes
Notes and practical projects for learning PHP while my learning journey.
ShingareOm/PentestingTools
This repository contains a collection of tools designed for automating penetration testing, while also being valuable for manual testing. Leveraging these tools can enhance both the efficiency and effectiveness of your security assessments.