metahttp

Network scanner

Automates scanning of HTTP resources in a target network using XML External Entity (XXE) attacks

A bash script that automates the scanning of a target network for HTTP resources through XXE

GitHub

37 stars
5 watching
8 forks
Language: Shell
last commit: almost 4 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

Repository Description Stars
m0nad/hellraiser Scans networks to identify vulnerabilities by correlating CPEs with CVEs using an API 562
emo-crab/observer_ward A tool for identifying vulnerabilities in web applications and services by analyzing patterns of web servers and services 1,270
mozilla/http-observatory An analysis tool to help secure websites by identifying vulnerabilities and weaknesses. 1,860
nxenon/h2spacex A low-level HTTP/2 library for exploiting race conditions in web servers 140
r0075h3ll/oralyzer A tool to identify vulnerabilities in web applications by probing for Open Redirections and other types of attacks. 753
msoap/shell2http An HTTP server designed to execute shell commands on demand. 1,351
tinyhttp/malibu Middleware to help prevent cross-site request forgery attacks in web applications 124
menkrep1337/xsscon A tool designed to scan websites for Cross-Site Scripting (XSS) vulnerabilities 210
portswigger/json-decoder Tools for analyzing and manipulating HTTP requests and responses in BurpSuite 10
vernamlab/medusa Automated attack synthesis tool for discovering vulnerabilities in CPU architecture and cryptographic protocols 18
johnnyxmas/scancannon Automated network vulnerability scanning and reconnaissance tool 432
kathanp19/gaussrf A tool for identifying potential vulnerabilities in websites by fetching known URLs and filtering out ones with open redirects or SSRF parameters. 165
hyperclaw79/hulk-v3 A tool for launching Distributed Denial of Service (DDoS) attacks on HTTPS servers. 357
assetnote/surf A tool that identifies and filters potential Server-Side Request Forgery (SSRF) vulnerabilities in cloud environments by probing external hosts. 533
ghostlulzhacks/waybacksqliscanner Scans URLs from the wayback machine and tests GET parameters for SQL injection vulnerabilities. 185