
GraphCrawler
GraphQL automated security testing toolkit

GraphQL automated security testing toolkit

Automation Recon tool which works with Large & Medium scopes. It performs a lot of tasks and gets back all the results in separated files.

The recursive internet scanner for hackers. 🧡

All in one tool for Information Gathering, Vulnerability Scanning and Crawling. A must have tool for all penetration testers


python3写的综合扫描工具,主要用来存活验证,敏感文件探测(目录扫描/js泄露接口/html注释泄露),WAF/CDN识别,端口扫描,指纹/服务识别,操作系统识别,POC扫描,SQL注入,绕过CDN,查询旁站等功能,主要用来甲方自测或乙方授权测试,请勿用来搞破坏。

vulnx 🕷️ an intelligent Bot, Shell can achieve automatic injection, and help researchers detect security vulnerabilities CMS system. It can perform…

Concurrent DNS takeover scanner detecting CNAME, NS, AXFR, SPF, MX, SRV, and stale A record vulnerabilities across cloud providers, with multi-level…

A Bash script and Docker image for Bug Bounty reconnaissance. Intended for headless use.

Security Tool for Reconnaissance and Information Gathering on a website. (python 3.x)

Crawls web applications to detect second-order subdomain takeover vulnerabilities by collecting URLs and matching configurable rules for non-200…

A collection oneliner scripts for bug bounty

A utility for detecting webpage inputs and conducting XSS scans.

Fast subdomain takeover scanner that checks DNS CNAME records against known fingerprints to detect vulnerable subdomains. Built in Go with…

A modular distributed penetration testing tool.

Multi-functional Web Recon & Vulnerability Scanner Tool

Robust Subdomain Takeover Tool