
git-all-secrets
A tool to capture all the git secrets by leveraging multiple open source git searching tools

A tool to capture all the git secrets by leveraging multiple open source git searching tools

Burp Suite extension for JavaScript static analysis: extracts API endpoints, URLs, secrets, and emails with noise filtering for web security testing.

ElectricEye is a multi-cloud, multi-SaaS Python CLI tool for Asset Management, Security Posture Management & Attack Surface Monitoring supporting…

how to look for Leaked Credentials !

a recon tool that finds sensitive data inside the screenshots uploaded to prnt.sc

rep+ — Burp-style HTTP Repeater for Chrome DevTools with built‑in AI to explain requests and suggest attacks

A collection of tools to perform searches on GitHub.

A python tool used to discover endpoints, potential parameters, a target specific wordlist for a given target and secrets

Fast GitHub recon tool. Scans for leaked secrets across all of GitHub, not just known repos and orgs. Support for GitHub dorks.

A tool to scan Kubernetes cluster for risky permissions

Curated collection of bug bounty tips, one-liners, and automation workflows for recon, fuzzing, and web exploitation, with private nuclei templates…

Passive API key and secret discovery browser extension for Chrome and Firefox. 80+ detection patterns, zero config.

jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive…

List of regex for scraping secret API keys and juicy information.

Slack enumeration and exposed secrets detection tool

「🔑」A tool used to hunt down API key leaks in JS files and pages

Concurrent CLI tool for discovering secrets, API keys, and links in JavaScript files during web reconnaissance, with custom regex pattern support and…

Search exposed EBS volumes for secrets