
Gxss – Tool to Check URLs That Contain Reflecting Params
Gxss Gxss is a tool to check a bunch of URLs that contain reflecting params. This a light weight tool for checking reflecting Parameters in a URL. Inspired by kxss by @tomnomnom. How…
Read more »
QSreplace – Tool to Replace All Query String Values With User Suplied Value
qsreplace Accept URLs on stdin, replace all query string values with a user-supplied value, only output each combination of query string parameters once per host and path. Install With Go:…
Read more »
reconFTW – Tool to Perform Automated Scan and Finding Vulnerabilities
Overview ReconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities. ReconFTW automates the…
Read more »
Waybackurls – Extract All URLs From a Domain
waybackurls waybackurls is tool that can fetch all the URLs that the Wayback Machine knows about for a domain. Accept line-delimited domains on stdin, fetch known URLs from the Wayback…
Read more »
DalFox – Powerful Automated XSS Scanning Tool And Parameter Analyzer
Dalfox XSS Tool DalFox is an powerful automated XSS scanning tool and parameter analyzer and utility that fast the process of detecting and verify XSS flaws. It comes with a…
Read more »
LazyCSRF – More Powerful CSRF PoC Generator on Burp Suite
LazyCSRF LazyCSRF is a more useful CSRF PoC generator on Burp Suite extentions/plugins. It is more accurate and powerfull than regular CSRF PoC extentions on Burp Suite. Motivation Burp Suite…
Read more »
PHP Malware Finder – Detect Potentially Malicious PHP Files
What does it detect? PHP-malware-finder does its very best to detect obfuscated/dodgy code as well as files using PHP functions often used in malwares/webshells. The following list of encoders/obfuscators/webshells are…
Read more »