Gf-Patterns

Vulnerability scanner

A toolset for identifying potential security vulnerabilities and patterns in web applications

GF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic, interesting Subs) parameters grep

GitHub

1k stars
28 watching
281 forks
last commit: about 2 years ago

Related projects:

RepositoryDescriptionStars
dustyfresh/php-vulnerability-audit-cheatsheetA collection of grep commands to help find potentially vulnerable PHP code348
kathanp19/gaussrfA tool for identifying potential vulnerabilities in websites by fetching known URLs and filtering out ones with open redirects or SSRF parameters.168
r0075h3ll/oralyzerA tool to identify vulnerabilities in web applications by probing for Open Redirections and other types of attacks.758
gquere/pwn_jenkinsProvides information and tools for exploiting security vulnerabilities in Jenkins servers1,971
designsecurity/progpilotAn application security testing tool for identifying vulnerabilities in PHP code333
damian89/extended-ssrf-searchAn SSRF scanner written in Python to identify potential vulnerabilities by scanning predefined settings in URLs and request headers.276
spidermate/b-xssrfA toolkit to detect and track vulnerabilities in web applications295
eddiezab/aggressor-scriptsA collection of scripts and tools for testing and exploiting network and system vulnerabilities.1
freefv/tencent_yun_toolsA collection of Python scripts to exploit vulnerabilities in Tencent Cloud services using an AccessKey34
fkie-cad/cwe_checkerA tool for detecting common bugs in binary executables.1,155
gand3lf/semgrepperAn extension to Burp Suite that integrates Semgrep for vulnerability scanning and analysis88
m0nad/hellraiserScans networks to identify vulnerabilities by correlating CPEs with CVEs using an API562
utiso/dorkbotA command-line tool to scan search results for vulnerabilities in webpages513
jlospinoso/unfurlAn entropy-based tool to identify link vulnerabilities in software60
firefart/hijaggerA tool used to identify potential security vulnerabilities in package maintainers of NPM and PyPi packages by checking for unregistered domains or email addresses.288