dotdotpwn

Fuzzer

A tool to discover directory traversal vulnerabilities in software

DotDotPwn - The Directory Traversal Fuzzer

GitHub

997 stars
37 watching
178 forks
Language: Perl
last commit: almost 4 years ago
Linked from 1 awesome list

fuzzerpenetration-testingperlsecuritytraversal

Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
jcesarstef/dotdotslashAutomated tool to test website directory traversal vulnerabilities by injecting user-controlled input into URLs and analyzing responses.422
google/oss-fuzz-vulnsRecords disclosed OSS-Fuzz vulnerabilities and their impact on versions and commits138
henshin/filebusterA fast and flexible web application testing tool that uses brute-force methods to discover vulnerabilities213
momenbasel/liffierAutomatically appends dot-dot-slash to URLs to test for path traversal vulnerabilities.8
google/fuzzbenchAutomated testing of software components to identify vulnerabilities and weaknesses1,110
andresriancho/websocket-fuzzerAutomates the process of sending WebSocket messages to test application vulnerabilities144
devanshbatham/openredirexA tool for detecting open redirect vulnerabilities in web applications by modifying URLs and attempting to fetch them.718
jtpereyda/boofuzzA tool for generating and testing network protocol inputs to identify vulnerabilities2,057
iromise/fansFuzzing tool to identify vulnerabilities in Android native system services.244
1n3/intruderpayloadsA collection of tools and methodologies for identifying vulnerabilities in web applications3,698
rootup/bfuzzAutomates browser testing with generated input payloads to identify vulnerabilities309
jiangsir404/xss-sql-fuzzAutomates fuzzing of XSS and SQL injection vulnerabilities in web applications using Burp Suite extensions.61
1n3/blackwidowA Python-based web application scanner that gathers OSINT and fuzz data to identify OWASP vulnerabilities on target websites.1,545
sefcom/witcherA framework for fuzzing web applications to detect vulnerabilities like command and SQL injection78
ghostlulzhacks/waybacksqliscannerScans URLs from the wayback machine and tests GET parameters for SQL injection vulnerabilities.187