gaussrf

Vulnerability scanner

A tool for identifying potential vulnerabilities in websites by fetching known URLs and filtering out ones with open redirects or SSRF parameters.

Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl and Filter Urls With OpenRedirection or SSRF Parameters.

GitHub

168 stars
7 watching
47 forks
Language: Shell
last commit: almost 6 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
r0075h3ll/oralyzerA tool to identify vulnerabilities in web applications by probing for Open Redirections and other types of attacks.758
gauravnarwani97/trishulAutomated vulnerability detection tool for web applications235
gand3lf/semgrepperAn extension to Burp Suite that integrates Semgrep for vulnerability scanning and analysis88
mindpatch/lorsrfA tool designed to identify parameters in web applications that can be exploited for SSRF or out-of-band resource load attacks.291
1ndianl33t/gf-patternsA toolset for identifying potential security vulnerabilities and patterns in web applications1,232
damian89/extended-ssrf-searchAn SSRF scanner written in Python to identify potential vulnerabilities by scanning predefined settings in URLs and request headers.276
ksharinarayanan/ssrfireAn automated tool to discover potential Server-Side Request Forgery (SSRF) vulnerabilities in web applications by scanning the domain for open redirects and testing for cross-site scripting (XSS)953
menkrep1337/xssconA tool designed to scan websites for Cross-Site Scripting (XSS) vulnerabilities214
spidermate/b-xssrfA toolkit to detect and track vulnerabilities in web applications295
whwlsfb/log4j2scanA tool that scans websites for Log4j2 remote code execution vulnerabilities using multiple DNS log platforms and supports various scan types776
samhaxr/recoxA tool that automates the identification and classification of vulnerabilities in web applications318
firefart/hijaggerA tool used to identify potential security vulnerabilities in package maintainers of NPM and PyPi packages by checking for unregistered domains or email addresses.288
lirantal/is-website-vulnerableA tool that scans websites for publicly known security vulnerabilities in their frontend JavaScript libraries.1,942
sectooladdict/wavsepAn open-source tool for evaluating web application vulnerabilities by analyzing the separation of concerns in web applications.232
1n3/blackwidowA Python-based web application scanner that gathers OSINT and fuzz data to identify OWASP vulnerabilities on target websites.1,545