• Stars
    star
    7
  • Rank 2,285,537 (Top 46 %)
  • Language
    Python
  • License
    The Unlicense
  • Created over 5 years ago
  • Updated about 3 years ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

Abuse Open Selenium Gird or Node to get access to metadata endpoint.

More Repositories

1

bruteforce-lists

Some files for bruteforcing certain things.
1,083
star
2

My-Shodan-Scripts

Collection of Scripts for shodan searching stuff.
Python
973
star
3

keywords

349
star
4

bugbounty-scans

aquatone results for sites with bug bountys
292
star
5

Jira-Scan

CVE-2017-9506 - SSRF
Python
185
star
6

cve-2020-0688

cve-2020-0688
Python
162
star
7

ssrf-finder

Pass list of urls with FUZZ in and it will check if it has found a potential SSRF.
Go
108
star
8

AWS-Scanner

Scans a list of websites for Cloudfront or S3 Buckets
Go
104
star
9

bugbountydork

Bug Bounty Dork
Python
66
star
10

mass-s3-bucket-tester

This tests a list of s3 buckets to see if they have dir listings enabled or if they are uploadable
Python
50
star
11

cloud-cidr

AWS,AZURE,GOOGLE CLOUD IP CIDRS
Shell
47
star
12

open-redirect

Open Redirect Finder.
Python
44
star
13

kube-scan

Kubernetes Scanner
Shell
42
star
14

metadata-one-liners

retrive metadata endpoint data with these one liners.
37
star
15

RPI-Control

Automated 433Mhz Control for Status Power Sockets using a Raspberry Pi
PHP
24
star
16

liferay-pwn

Vuln Liferay scanner & Exploit
Python
21
star
17

wheres-my-git

Wheres My Git - Find /.git/config files based on dirs found in home url
Shell
21
star
18

InfiniteWP-exploit

InfiniteWP Client < 1.9.4.5 - Authentication Bypass
Python
20
star
19

frida-docker

Dockerised Version of Frida
JavaScript
20
star
20

consul-pwn

Make a Consul Agent Grab Metadata endpoints
Python
19
star
21

grayhatwarfare-docs-finder

Finds Documents On Cloud Assets Using grayhatwarfare API for short urls
Python
17
star
22

S3-Listable

S3 Buckets that will let you list all files inside them
15
star
23

s3-tko

AWS S3 Bucket Finder.
Go
15
star
24

mini-php-shells

Multiple Shells of the same code with different extentions.
PHP
15
star
25

aquatone-docker

Docker Version of Aquatone
15
star
26

wpa-cracking

Command List for Hashcat and default keyspaces.
14
star
27

All-in-One-WP-Migration-Backup-Finder

All-in-One WP Migration-Backup-Finder
Python
14
star
28

bash-hacks

little scripts of bash stuff that i've found handy.
Shell
14
star
29

rb-recon

13
star
30

hamachi-pi

Install hamachi on your raspberry pi
Shell
13
star
31

wayback-saver

Saves pages to Wayback machine
Go
13
star
32

Hikvision-Brute-Force

Brute Force Hikvision Devices that only allow PIN passwords
Python
12
star
33

yahoo-bug-bounty

List of hosts from yahoo.com
12
star
34

wpa-masshandshakeextract

Needed a way to filter all my pwnagotchi handshakes.
Shell
11
star
35

firebaseio-checker-go

Firebase url checker in go
Go
11
star
36

cve-2019-6715

Go
11
star
37

redirector

Redirects any request with which ever http status code you want to a location of your choice
Python
10
star
38

jamf-log4j

Python
10
star
39

sms-command-server

Send a SMS to Control Your Linux Box
PHP
9
star
40

firebaseio-checker

Checks a list of firebaseio to confirm they are working and have dev access to them
Python
9
star
41

extract-m3u

Extract username and passwords from IPTV urls
Python
9
star
42

docker-massscan-webui

Masscan web gui
PHP
8
star
43

M3U-Generator

Add Stream links and generate a playlist.
PHP
8
star
44

twando

Twitter Multi Account
PHP
8
star
45

docker-dump

dumping random docker projects here
CSS
8
star
46

cve-2022-23131-exp

Zabbix SSO Bypass
Python
8
star
47

wifite2-docker

Docker of Wifite2
Dockerfile
8
star
48

What-Security

What-Security Home Page
CSS
8
star
49

Aircrack-NG_RaspberryPI

Installer for Aircrack-NG / Airoscript For Raspberry Pi
Shell
7
star
50

google-dork

This will grab a random dork and then save the output to a text file
Python
7
star
51

SMS-PI

SMS PI - Send a SMS via Your Raspberry PI UK SMS ONLY!
6
star
52

CVE-2019-7616

POC for CVE-2019-7616 / ESA-2019-09
Python
6
star
53

wordlist-extractor

Extracts unique file and folder names from a list of urls.
Python
6
star
54

g-suite-check

Checks if the domains MX records point at G-suite
Python
6
star
55

csp-report-buckets

Grabs Storage Bucket Urls from CSP headers
Go
6
star
56

urlscan-search

urlscan.io search for domains
Go
6
star
57

salesforce-ssrf

Python
5
star
58

CVE-2019-5418

Go
5
star
59

CVE-2019-18935

CVE-2019-18935
5
star
60

My-Binary-Edge

Tools i've made to help with working with data from https://www.binaryedge.io
Python
5
star
61

XSS-image

XSS via images
Python
5
star
62

hakrawler

Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application
Go
5
star
63

xupnpd-raspberry-armhf

Deb of xupnpd for raspberry pi
4
star
64

js-source-mapper

Take JS files in and get .map versions if possible.
Go
4
star
65

clippy-finalurl

Go
4
star
66

githack

Python
4
star
67

Dropbox-Mysql-Upload

Backup Mysql to Dropbox
4
star
68

bulk_ssl_expire

Check a text file of domains for any expired SSL Certificates
Shell
4
star
69

squid-anon-docker

Squid Proxy that is classed as anon
Dockerfile
4
star
70

github-about-me

Enter a Github Key and tell me about you
HTML
3
star
71

iptv-buster

Some horrible code i made a while back
Go
3
star
72

screenshot-heroki

JavaScript
3
star
73

mot-checker

UK MOT/TAX checker for UK registered Vehicles
Python
3
star
74

gcr-finder

Find Google GCR Repo's
Shell
3
star
75

PiCam-image-requester

Send a SMS and Your Raspberry Pi cam and it will send a MMS or Email or Tweet of the pic for you
PHP
3
star
76

popplugin

WordPress Plugin for Use in Testing for PHP Object Injection
Ruby
3
star
77

nginxpwner

Python
3
star
78

rubbish-links

Junk or gold
2
star
79

UniFi-Network-ipad-blocker

Script to block childs ipads from the internet using UniFi Network setup.
Python
2
star
80

Netgear-DGN1000---DGN2200---Remote-Password-Finder

PHP to get admin username and password of DGN1000 to DGN2000
PHP
2
star
81

tko-random-robbie

Serverless page for my subdomain takeovers.
HTML
2
star
82

elastic-tko

Elasticbean Stalk TKO
Python
2
star
83

serverless-whatismyip

Go
2
star
84

pir-bullet

Raspberry Pi PIR Intruder Alerts Via Push Bullet
Python
2
star
85

host-scanner

Go
2
star
86

django-splitter

ignore for now
Go
2
star
87

csp-report-extractor

Extracts CSP reports
Go
2
star
88

RTMP_NGINX_SHOW

View Streams From Your Nginx Server
CSS
2
star
89

xsstrike-docker

XSStrike in Docker
Dockerfile
2
star
90

Python-Tweet-Dump

Dumping My Twitter Python Scripts
Python
2
star
91

yahoo-bugbountyscans

aquatone-scans of yahoo
HTML
2
star
92

netk8t

container to deploy for attacking k8s
Dockerfile
2
star
93

spoofssid-docker

Docker container to spoof popular SSID's
2
star
94

wpscan-help

Output of WPSCAN --hh
2
star
95

selenium-metadata-grabber

Selenium Metadata Endpoint Grabber
Python
2
star
96

censysio-ip-search

Provides a list of IP's for your search.
Go
2
star
97

wp-engine

WP-Engine Disclosure
Python
2
star
98

beerfarmers-bot

Python
1
star
99

phonegap_smspi

SMSPI Phone Gap App
JavaScript
1
star
100

Pir-tweet

Tweet's when motion detected
Python
1
star