The tool in question was created in Go and its main objective is to search for API keys in JavaScript …
ReconAIzer – A Burp Suite Extension To Add OpenAI (GPT) On Burp And Help You With Your Bug Bounty Recon To Discover Endpoints, Params, URLs, Subdomains And More!
ReconAIzer is a powerful Jython extension for Burp Suite that leverages OpenAI to help bug bounty hunters optimize their recon …
Firefly – Black Box Fuzzer For Web Applications
Firefly is an advanced black-box fuzzer and not just a standard asset discovery tool. Firefly provides the advantage of testing …
Jsfinder – Fetches JavaScript Files Quickly And Comprehensively
jsFinder is a command-line tool written in Go that scans web pages to find JavaScript files linked in the HTML …
Domain-Protect – OWASP Domain Protect – Prevent Subdomain Takeover
OWASP Global AppSec Dublin – talk and demo Features scan Amazon Route53 across an AWS Organization for domain records vulnerable …
debugHunter – Discover Hidden Debugging Parameters And Uncover Web Application Secrets
Discover hidden debugging parameters and uncover web application secrets with debugHunter. This Chrome extension scans websites for debugging parameters and …
Web-Hacking-Playground – Web Application With Vulnerabilities Found In Real Cases, Both In Pentests And In Bug Bounty Programs
Web Hacking Playground is a controlled web hacking environment. It consists of vulnerabilities found in real cases, both in pentests …
SQLiDetector – Helps You To Detect SQL Injection “Error Based” By Sending Multiple Requests With 14 Payloads And Checking For 152 Regex Patterns For Different Databases
Simple python script supported with BurpBouty profile that helps you to detect SQL injection “Error based” by sending multiple requests …
Slicer – Tool To Automate The Boring Process Of APK Recon
A tool to automate the recon process on an APK file. Slicer accepts a path to an extracted APK file …
autoSSRF – Smart Context-Based SSRF Vulnerabiltiy Scanner
autoSSRF is your best ally for identifying SSRF vulnerabilities at scale. Different from other ssrf automation tools, this one comes …