From b033717d4a30eb5b750d338daffda3fc3e3bdd7d Mon Sep 17 00:00:00 2001 From: hahwul Date: Tue, 16 Aug 2022 20:42:23 +0900 Subject: [PATCH] Update --- scripts/migration.rb | 8 ++++- template/foot.md | 4 --- template/head.md | 32 ------------------- weapons/230-OOB.yaml | 12 +++++++ weapons/3klCon.yaml | 13 ++++++++ weapons/AWSBucketDump.yaml | 12 +++++++ weapons/Amass.yaml | 14 ++++++++ weapons/Arjun.yaml | 15 +++++++++ weapons/Assetnote_Wordlists.yaml | 15 +++++++++ weapons/Atlas.yaml | 15 +++++++++ weapons/AuthMatrix.yaml | 13 ++++++++ weapons/Autorize.yaml | 13 ++++++++ weapons/Blacklist3r.yaml | 12 +++++++ weapons/BruteX.yaml | 12 +++++++ weapons/Bug-Bounty-Toolz.yaml | 12 +++++++ weapons/BurpBounty.yaml | 13 ++++++++ weapons/BurpCustomizer.yaml | 13 ++++++++ weapons/BurpJSLinkFinder.yaml | 13 ++++++++ weapons/BurpSuite-Secret_Finder.yaml | 13 ++++++++ weapons/BurpSuite.yaml | 11 +++++++ weapons/BurpSuiteHTTPSmuggler.yaml | 13 ++++++++ weapons/BurpSuiteLoggerPlusPlus.yaml | 13 ++++++++ weapons/CSP_Evaluator.yaml | 11 +++++++ weapons/CT_subdomains.yaml | 13 ++++++++ weapons/Chaos_Web.yaml | 12 +++++++ .../Chromium-based-XSS-Taint-Tracking.yaml | 13 ++++++++ weapons/CorsMe.yaml | 15 +++++++++ weapons/Corsy.yaml | 15 +++++++++ weapons/CyberChef.yaml | 13 ++++++++ weapons/DNSDumpster.yaml | 11 +++++++ weapons/DOMPurify.yaml | 15 +++++++++ weapons/DSSS.yaml | 12 +++++++ weapons/Dark_Reader.yaml | 13 ++++++++ weapons/Dark_Reader_for_Safari.yaml | 12 +++++++ weapons/DeepViolet.yaml | 12 +++++++ weapons/DirDar.yaml | 13 ++++++++ weapons/DotGit.yaml | 14 ++++++++ weapons/Edit-This-Cookie.yaml | 14 ++++++++ weapons/Emissary.yaml | 13 ++++++++ weapons/FavFreak.yaml | 15 +++++++++ weapons/Findsploit.yaml | 12 +++++++ weapons/Gf-Patterns.yaml | 16 ++++++++++ weapons/GitMiner.yaml | 15 +++++++++ weapons/Gopherus.yaml | 16 ++++++++++ weapons/GraphQLmap.yaml | 16 ++++++++++ weapons/HRS.yaml | 13 ++++++++ weapons/HUNT.yaml | 14 ++++++++ weapons/Hack-Tools.yaml | 14 ++++++++ weapons/HydraRecon.yaml | 12 +++++++ weapons/IntruderPayloads.yaml | 13 ++++++++ weapons/JSFScan.sh.yaml | 14 ++++++++ weapons/LFISuite.yaml | 15 +++++++++ weapons/LinkFinder.yaml | 15 +++++++++ weapons/MM3_ProxySwitch.yaml | 13 ++++++++ weapons/NoSQLMap.yaml | 16 ++++++++++ weapons/OneForAll.yaml | 15 +++++++++ weapons/OpenRedireX.yaml | 12 +++++++ weapons/Osmedeus.yaml | 16 ++++++++++ weapons/PPScan.yaml | 12 +++++++ weapons/ParamSpider.yaml | 15 +++++++++ weapons/Parth.yaml | 15 +++++++++ weapons/PayloadsAllTheThings.yaml | 13 ++++++++ weapons/Phoenix.yaml | 11 +++++++ weapons/Photon.yaml | 15 +++++++++ weapons/PoC-in-GitHub.yaml | 12 +++++++ weapons/RustScan.yaml | 15 +++++++++ weapons/S3Scanner.yaml | 15 +++++++++ weapons/SQLNinja.yaml | 11 +++++++ weapons/SQL_Ninja.yaml | 11 +++++++ weapons/SSRFmap.yaml | 15 +++++++++ weapons/STEWS.yaml | 12 +++++++ weapons/SecLists.yaml | 18 +++++++++++ weapons/SecretFinder.yaml | 16 ++++++++++ weapons/SecurityTrails.yaml | 11 +++++++ weapons/SequenceDiagram.yaml | 11 +++++++ weapons/Shodan.yaml | 11 +++++++ weapons/Silver.yaml | 15 +++++++++ weapons/Sn1per.yaml | 15 +++++++++ weapons/Stepper.yaml | 13 ++++++++ weapons/Striker.yaml | 15 +++++++++ weapons/SubOver.yaml | 12 +++++++ weapons/Sublist3r.yaml | 15 +++++++++ weapons/Taipan.yaml | 12 +++++++ weapons/TukTuk.yaml | 15 +++++++++ weapons/User-Agent_Switcher.yaml | 12 +++++++ weapons/VHostScan.yaml | 17 ++++++++++ weapons/Wayback_Machine.yaml | 12 +++++++ weapons/Web-Cache-Vulnerability-Scanner.yaml | 14 ++++++++ weapons/XSRFProbe.yaml | 12 +++++++ weapons/XSStrike.yaml | 15 +++++++++ weapons/XSpear.yaml | 15 +++++++++ weapons/XXEinjector.yaml | 13 ++++++++ weapons/a2sv.yaml | 15 +++++++++ weapons/altdns.yaml | 16 ++++++++++ weapons/anew.yaml | 15 +++++++++ weapons/apkleaks.yaml | 15 +++++++++ weapons/aquatone.yaml | 15 +++++++++ weapons/arachni.yaml | 14 ++++++++ weapons/assetfinder.yaml | 15 +++++++++ weapons/attack-surface-detector-zap.yaml | 13 ++++++++ weapons/auto-repeater.yaml | 13 ++++++++ weapons/autochrome.yaml | 12 +++++++ weapons/axiom.yaml | 14 ++++++++ weapons/bat.yaml | 12 +++++++ weapons/boast.yaml | 12 +++++++ weapons/bountyplz.yaml | 14 ++++++++ weapons/burl.yaml | 15 +++++++++ weapons/burp-exporter.yaml | 13 ++++++++ weapons/burp-piper.yaml | 13 ++++++++ weapons/burp-retire-js.yaml | 14 ++++++++ weapons/burp-send-to.yaml | 13 ++++++++ weapons/c-jwt-cracker.yaml | 15 +++++++++ weapons/can-i-take-over-xyz.yaml | 13 ++++++++ weapons/cariddi.yaml | 13 ++++++++ weapons/cc.py.yaml | 15 +++++++++ weapons/cf-check.yaml | 15 +++++++++ weapons/chaos-client.yaml | 15 +++++++++ weapons/clear-cache.yaml | 13 ++++++++ weapons/collaborator-everywhere.yaml | 13 ++++++++ weapons/commix.yaml | 12 +++++++ weapons/community-scripts.yaml | 13 ++++++++ weapons/confused.yaml | 13 ++++++++ weapons/cookie-quick-manager.yaml | 14 ++++++++ weapons/corsair_scan.yaml | 13 ++++++++ weapons/crawlergo.yaml | 12 +++++++ weapons/crlfuzz.yaml | 15 +++++++++ weapons/csp-auditor.yaml | 14 ++++++++ weapons/curl.yaml | 15 +++++++++ weapons/dalfox.yaml | 16 ++++++++++ weapons/dirsearch.yaml | 15 +++++++++ weapons/ditto.yaml | 12 +++++++ weapons/dmut.yaml | 13 ++++++++ weapons/dnsobserver.yaml | 14 ++++++++ weapons/dnsprobe.yaml | 16 ++++++++++ weapons/dnsvalidator.yaml | 13 ++++++++ weapons/dnsx.yaml | 13 ++++++++ weapons/docem.yaml | 13 ++++++++ weapons/domdig.yaml | 15 +++++++++ weapons/dontgo403.yaml | 12 +++++++ weapons/dotdotpwn.yaml | 15 +++++++++ weapons/eval_villain.yaml | 13 ++++++++ weapons/ezXSS.yaml | 16 ++++++++++ weapons/femida.yaml | 13 ++++++++ weapons/feroxbuster.yaml | 12 +++++++ weapons/ffuf.yaml | 15 +++++++++ weapons/fhc.yaml | 12 +++++++ weapons/findom-xss.yaml | 15 +++++++++ weapons/findomain.yaml | 16 ++++++++++ weapons/fockcache.yaml | 12 +++++++ weapons/fuzzparam.yaml | 12 +++++++ weapons/fzf.yaml | 15 +++++++++ weapons/gau.yaml | 16 ++++++++++ weapons/gauplus.yaml | 13 ++++++++ weapons/gee.yaml | 14 ++++++++ weapons/getJS.yaml | 12 +++++++ weapons/gf.yaml | 15 +++++++++ weapons/gitGraber.yaml | 15 +++++++++ weapons/github-endpoints.yaml | 12 +++++++ weapons/github-regexp.yaml | 12 +++++++ weapons/github-search.yaml | 15 +++++++++ weapons/github-subdomains.yaml | 12 +++++++ weapons/gitleaks.yaml | 12 +++++++ weapons/gitls.yaml | 12 +++++++ weapons/gitrob.yaml | 15 +++++++++ weapons/go-dork.yaml | 15 +++++++++ weapons/gobuster.yaml | 15 +++++++++ weapons/gospider.yaml | 15 +++++++++ weapons/gotator.yaml | 12 +++++++ weapons/gotestwaf.yaml | 13 ++++++++ weapons/gowitness.yaml | 16 ++++++++++ weapons/graphql-voyager.yaml | 15 +++++++++ weapons/grc.yaml | 12 +++++++ weapons/grex.yaml | 13 ++++++++ weapons/gron.yaml | 15 +++++++++ weapons/h2csmuggler.yaml | 15 +++++++++ weapons/hacks.yaml | 15 +++++++++ weapons/hakcheckurl.yaml | 12 +++++++ weapons/hakrawler.yaml | 16 ++++++++++ weapons/hakrevdns.yaml | 15 +++++++++ weapons/haktrails.yaml | 12 +++++++ weapons/hashcat.yaml | 12 +++++++ weapons/headi.yaml | 12 +++++++ weapons/hetty.yaml | 17 ++++++++++ weapons/hinject.yaml | 15 +++++++++ weapons/htcat.yaml | 15 +++++++++ weapons/http-request-smuggler.yaml | 13 ++++++++ weapons/http-request-smuggling.yaml | 12 +++++++ weapons/http-script-generator.yaml | 14 ++++++++ weapons/http2smugl.yaml | 13 ++++++++ weapons/httpie.yaml | 15 +++++++++ weapons/httprobe.yaml | 15 +++++++++ weapons/httptoolkit.yaml | 13 ++++++++ weapons/httpx.yaml | 17 ++++++++++ weapons/hurl.yaml | 12 +++++++ weapons/inql.yaml | 13 ++++++++ weapons/interactsh.yaml | 12 +++++++ weapons/intrigue-core.yaml | 15 +++++++++ weapons/jaeles.yaml | 15 +++++++++ weapons/jsfuck.yaml | 12 +++++++ weapons/jsonwebtoken.github.io.yaml | 14 ++++++++ weapons/jsprime.yaml | 12 +++++++ weapons/jwt-cracker.yaml | 15 +++++++++ weapons/jwt-hack.yaml | 16 ++++++++++ weapons/kiterunner.yaml | 12 +++++++ weapons/knife.yaml | 13 ++++++++ weapons/knock.yaml | 15 +++++++++ weapons/lazyrecon.yaml | 16 ++++++++++ weapons/longtongue.yaml | 12 +++++++ weapons/masscan.yaml | 16 ++++++++++ weapons/medusa.yaml | 15 +++++++++ weapons/meg.yaml | 15 +++++++++ weapons/megplus.yaml | 15 +++++++++ weapons/naabu.yaml | 17 ++++++++++ weapons/nikto.yaml | 15 +++++++++ weapons/nmap.yaml | 14 ++++++++ weapons/nosqli.yaml | 15 +++++++++ weapons/nuclei.yaml | 16 ++++++++++ weapons/ob_hacky_slack.yaml | 12 +++++++ weapons/owasp-zap-jwt-addon.yaml | 13 ++++++++ weapons/oxml_xxe.yaml | 15 +++++++++ weapons/pagodo.yaml | 13 ++++++++ weapons/param-miner.yaml | 13 ++++++++ weapons/parameth.yaml | 12 +++++++ weapons/pentest-tools.yaml | 15 +++++++++ weapons/pet.yaml | 14 ++++++++ weapons/plution.yaml | 12 +++++++ weapons/postMessage-tracker.yaml | 14 ++++++++ weapons/ppfuzz.yaml | 13 ++++++++ weapons/ppmap.yaml | 13 ++++++++ weapons/proxify.yaml | 13 ++++++++ weapons/puredns.yaml | 13 ++++++++ weapons/pwncat.yaml | 16 ++++++++++ weapons/qsreplace.yaml | 16 ++++++++++ weapons/quickjack.yaml | 13 ++++++++ weapons/rapidscan.yaml | 15 +++++++++ weapons/recon_profile.yaml | 15 +++++++++ weapons/reconftw.yaml | 13 ++++++++ weapons/reflect.yaml | 13 ++++++++ weapons/reflected-parameters.yaml | 13 ++++++++ weapons/rengine.yaml | 17 ++++++++++ weapons/rusolver.yaml | 12 +++++++ weapons/s3reverse.yaml | 16 ++++++++++ weapons/safecopy.yaml | 13 ++++++++ weapons/scilla.yaml | 16 ++++++++++ weapons/security-crawl-maze.yaml | 14 ++++++++ weapons/security-research-pocs.yaml | 13 ++++++++ weapons/shuffledns.yaml | 17 ++++++++++ weapons/singularity.yaml | 12 +++++++ weapons/slackcat.yaml | 12 +++++++ weapons/smuggler.yaml | 16 ++++++++++ weapons/sn0int.yaml | 12 +++++++ weapons/spiderfoot.yaml | 12 +++++++ weapons/sqliv.yaml | 12 +++++++ weapons/sqlmap.yaml | 14 ++++++++ weapons/ssrf-sheriff.yaml | 15 +++++++++ weapons/subfinder.yaml | 17 ++++++++++ weapons/subgen.yaml | 13 ++++++++ weapons/subjack.yaml | 15 +++++++++ weapons/subjs.yaml | 12 +++++++ weapons/subs_all.yaml | 15 +++++++++ weapons/subzy.yaml | 12 +++++++ weapons/taborator.yaml | 13 ++++++++ weapons/template-generator.yaml | 18 +++++++++++ weapons/testssl.sh.yaml | 15 +++++++++ weapons/thc-hydra.yaml | 15 +++++++++ weapons/tiscripts.yaml | 12 +++++++ weapons/tplmap.yaml | 13 ++++++++ weapons/turbo-intruder.yaml | 13 ++++++++ weapons/uncover.yaml | 13 ++++++++ weapons/unfurl.yaml | 15 +++++++++ weapons/urlgrab.yaml | 16 ++++++++++ weapons/urlhunter.yaml | 13 ++++++++ weapons/urlprobe.yaml | 15 +++++++++ weapons/uro.yaml | 12 +++++++ weapons/waybackurls.yaml | 15 +++++++++ weapons/weaponised-XSS-payloads.yaml | 12 +++++++ weapons/web_cache_poison.yaml | 12 +++++++ weapons/websocket-connection-smuggler.yaml | 12 +++++++ weapons/wfuzz.yaml | 15 +++++++++ weapons/wprecon.yaml | 13 ++++++++ weapons/wpscan.yaml | 17 ++++++++++ weapons/ws-smuggler.yaml | 12 +++++++ weapons/wssip.yaml | 13 ++++++++ weapons/wuzz.yaml | 15 +++++++++ weapons/x8.yaml | 12 +++++++ weapons/xsinator.com.yaml | 12 +++++++ weapons/xss-cheatsheet-data.yaml | 16 ++++++++++ weapons/xsscrapy.yaml | 16 ++++++++++ weapons/xsser.yaml | 16 ++++++++++ weapons/xssor2.yaml | 12 +++++++ weapons/xxeserv.yaml | 12 +++++++ weapons/ysoserial.net.yaml | 15 +++++++++ weapons/ysoserial.yaml | 16 ++++++++++ weapons/zap-cli.yaml | 15 +++++++++ weapons/zap-hud.yaml | 13 ++++++++ weapons/zaproxy.yaml | 12 +++++++ weapons/zdns.yaml | 12 +++++++ 297 files changed, 4052 insertions(+), 37 deletions(-) delete mode 100644 template/foot.md delete mode 100644 template/head.md create mode 100644 weapons/230-OOB.yaml create mode 100644 weapons/3klCon.yaml create mode 100644 weapons/AWSBucketDump.yaml create mode 100644 weapons/Amass.yaml create mode 100644 weapons/Arjun.yaml create mode 100644 weapons/Assetnote_Wordlists.yaml create mode 100644 weapons/Atlas.yaml create mode 100644 weapons/AuthMatrix.yaml create mode 100644 weapons/Autorize.yaml create mode 100644 weapons/Blacklist3r.yaml create mode 100644 weapons/BruteX.yaml create mode 100644 weapons/Bug-Bounty-Toolz.yaml create mode 100644 weapons/BurpBounty.yaml create mode 100644 weapons/BurpCustomizer.yaml create mode 100644 weapons/BurpJSLinkFinder.yaml create mode 100644 weapons/BurpSuite-Secret_Finder.yaml create mode 100644 weapons/BurpSuite.yaml create mode 100644 weapons/BurpSuiteHTTPSmuggler.yaml create mode 100644 weapons/BurpSuiteLoggerPlusPlus.yaml create mode 100644 weapons/CSP_Evaluator.yaml create mode 100644 weapons/CT_subdomains.yaml create mode 100644 weapons/Chaos_Web.yaml create mode 100644 weapons/Chromium-based-XSS-Taint-Tracking.yaml create mode 100644 weapons/CorsMe.yaml create mode 100644 weapons/Corsy.yaml create mode 100644 weapons/CyberChef.yaml create mode 100644 weapons/DNSDumpster.yaml create mode 100644 weapons/DOMPurify.yaml create mode 100644 weapons/DSSS.yaml create mode 100644 weapons/Dark_Reader.yaml create mode 100644 weapons/Dark_Reader_for_Safari.yaml create mode 100644 weapons/DeepViolet.yaml create mode 100644 weapons/DirDar.yaml create mode 100644 weapons/DotGit.yaml create mode 100644 weapons/Edit-This-Cookie.yaml create mode 100644 weapons/Emissary.yaml create mode 100644 weapons/FavFreak.yaml create mode 100644 weapons/Findsploit.yaml create mode 100644 weapons/Gf-Patterns.yaml create mode 100644 weapons/GitMiner.yaml create mode 100644 weapons/Gopherus.yaml create mode 100644 weapons/GraphQLmap.yaml create mode 100644 weapons/HRS.yaml create mode 100644 weapons/HUNT.yaml create mode 100644 weapons/Hack-Tools.yaml create mode 100644 weapons/HydraRecon.yaml create mode 100644 weapons/IntruderPayloads.yaml create mode 100644 weapons/JSFScan.sh.yaml create mode 100644 weapons/LFISuite.yaml create mode 100644 weapons/LinkFinder.yaml create mode 100644 weapons/MM3_ProxySwitch.yaml create mode 100644 weapons/NoSQLMap.yaml create mode 100644 weapons/OneForAll.yaml create mode 100644 weapons/OpenRedireX.yaml create mode 100644 weapons/Osmedeus.yaml create mode 100644 weapons/PPScan.yaml create mode 100644 weapons/ParamSpider.yaml create mode 100644 weapons/Parth.yaml create mode 100644 weapons/PayloadsAllTheThings.yaml create mode 100644 weapons/Phoenix.yaml create mode 100644 weapons/Photon.yaml create mode 100644 weapons/PoC-in-GitHub.yaml create mode 100644 weapons/RustScan.yaml create mode 100644 weapons/S3Scanner.yaml create mode 100644 weapons/SQLNinja.yaml create mode 100644 weapons/SQL_Ninja.yaml create mode 100644 weapons/SSRFmap.yaml create mode 100644 weapons/STEWS.yaml create mode 100644 weapons/SecLists.yaml create mode 100644 weapons/SecretFinder.yaml create mode 100644 weapons/SecurityTrails.yaml create mode 100644 weapons/SequenceDiagram.yaml create mode 100644 weapons/Shodan.yaml create mode 100644 weapons/Silver.yaml create mode 100644 weapons/Sn1per.yaml create mode 100644 weapons/Stepper.yaml create mode 100644 weapons/Striker.yaml create mode 100644 weapons/SubOver.yaml create mode 100644 weapons/Sublist3r.yaml create mode 100644 weapons/Taipan.yaml create mode 100644 weapons/TukTuk.yaml create mode 100644 weapons/User-Agent_Switcher.yaml create mode 100644 weapons/VHostScan.yaml create mode 100644 weapons/Wayback_Machine.yaml create mode 100644 weapons/Web-Cache-Vulnerability-Scanner.yaml create mode 100644 weapons/XSRFProbe.yaml create mode 100644 weapons/XSStrike.yaml create mode 100644 weapons/XSpear.yaml create mode 100644 weapons/XXEinjector.yaml create mode 100644 weapons/a2sv.yaml create mode 100644 weapons/altdns.yaml create mode 100644 weapons/anew.yaml create mode 100644 weapons/apkleaks.yaml create mode 100644 weapons/aquatone.yaml create mode 100644 weapons/arachni.yaml create mode 100644 weapons/assetfinder.yaml create mode 100644 weapons/attack-surface-detector-zap.yaml create mode 100644 weapons/auto-repeater.yaml create mode 100644 weapons/autochrome.yaml create mode 100644 weapons/axiom.yaml create mode 100644 weapons/bat.yaml create mode 100644 weapons/boast.yaml create mode 100644 weapons/bountyplz.yaml create mode 100644 weapons/burl.yaml create mode 100644 weapons/burp-exporter.yaml create mode 100644 weapons/burp-piper.yaml create mode 100644 weapons/burp-retire-js.yaml create mode 100644 weapons/burp-send-to.yaml create mode 100644 weapons/c-jwt-cracker.yaml create mode 100644 weapons/can-i-take-over-xyz.yaml create mode 100644 weapons/cariddi.yaml create mode 100644 weapons/cc.py.yaml create mode 100644 weapons/cf-check.yaml create mode 100644 weapons/chaos-client.yaml create mode 100644 weapons/clear-cache.yaml create mode 100644 weapons/collaborator-everywhere.yaml create mode 100644 weapons/commix.yaml create mode 100644 weapons/community-scripts.yaml create mode 100644 weapons/confused.yaml create mode 100644 weapons/cookie-quick-manager.yaml create mode 100644 weapons/corsair_scan.yaml create mode 100644 weapons/crawlergo.yaml create mode 100644 weapons/crlfuzz.yaml create mode 100644 weapons/csp-auditor.yaml create mode 100644 weapons/curl.yaml create mode 100644 weapons/dalfox.yaml create mode 100644 weapons/dirsearch.yaml create mode 100644 weapons/ditto.yaml create mode 100644 weapons/dmut.yaml create mode 100644 weapons/dnsobserver.yaml create mode 100644 weapons/dnsprobe.yaml create mode 100644 weapons/dnsvalidator.yaml create mode 100644 weapons/dnsx.yaml create mode 100644 weapons/docem.yaml create mode 100644 weapons/domdig.yaml create mode 100644 weapons/dontgo403.yaml create mode 100644 weapons/dotdotpwn.yaml create mode 100644 weapons/eval_villain.yaml create mode 100644 weapons/ezXSS.yaml create mode 100644 weapons/femida.yaml create mode 100644 weapons/feroxbuster.yaml create mode 100644 weapons/ffuf.yaml create mode 100644 weapons/fhc.yaml create mode 100644 weapons/findom-xss.yaml create mode 100644 weapons/findomain.yaml create mode 100644 weapons/fockcache.yaml create mode 100644 weapons/fuzzparam.yaml create mode 100644 weapons/fzf.yaml create mode 100644 weapons/gau.yaml create mode 100644 weapons/gauplus.yaml create mode 100644 weapons/gee.yaml create mode 100644 weapons/getJS.yaml create mode 100644 weapons/gf.yaml create mode 100644 weapons/gitGraber.yaml create mode 100644 weapons/github-endpoints.yaml create mode 100644 weapons/github-regexp.yaml create mode 100644 weapons/github-search.yaml create mode 100644 weapons/github-subdomains.yaml create mode 100644 weapons/gitleaks.yaml create mode 100644 weapons/gitls.yaml create mode 100644 weapons/gitrob.yaml create mode 100644 weapons/go-dork.yaml create mode 100644 weapons/gobuster.yaml create mode 100644 weapons/gospider.yaml create mode 100644 weapons/gotator.yaml create mode 100644 weapons/gotestwaf.yaml create mode 100644 weapons/gowitness.yaml create mode 100644 weapons/graphql-voyager.yaml create mode 100644 weapons/grc.yaml create mode 100644 weapons/grex.yaml create mode 100644 weapons/gron.yaml create mode 100644 weapons/h2csmuggler.yaml create mode 100644 weapons/hacks.yaml create mode 100644 weapons/hakcheckurl.yaml create mode 100644 weapons/hakrawler.yaml create mode 100644 weapons/hakrevdns.yaml create mode 100644 weapons/haktrails.yaml create mode 100644 weapons/hashcat.yaml create mode 100644 weapons/headi.yaml create mode 100644 weapons/hetty.yaml create mode 100644 weapons/hinject.yaml create mode 100644 weapons/htcat.yaml create mode 100644 weapons/http-request-smuggler.yaml create mode 100644 weapons/http-request-smuggling.yaml create mode 100644 weapons/http-script-generator.yaml create mode 100644 weapons/http2smugl.yaml create mode 100644 weapons/httpie.yaml create mode 100644 weapons/httprobe.yaml create mode 100644 weapons/httptoolkit.yaml create mode 100644 weapons/httpx.yaml create mode 100644 weapons/hurl.yaml create mode 100644 weapons/inql.yaml create mode 100644 weapons/interactsh.yaml create mode 100644 weapons/intrigue-core.yaml create mode 100644 weapons/jaeles.yaml create mode 100644 weapons/jsfuck.yaml create mode 100644 weapons/jsonwebtoken.github.io.yaml create mode 100644 weapons/jsprime.yaml create mode 100644 weapons/jwt-cracker.yaml create mode 100644 weapons/jwt-hack.yaml create mode 100644 weapons/kiterunner.yaml create mode 100644 weapons/knife.yaml create mode 100644 weapons/knock.yaml create mode 100644 weapons/lazyrecon.yaml create mode 100644 weapons/longtongue.yaml create mode 100644 weapons/masscan.yaml create mode 100644 weapons/medusa.yaml create mode 100644 weapons/meg.yaml create mode 100644 weapons/megplus.yaml create mode 100644 weapons/naabu.yaml create mode 100644 weapons/nikto.yaml create mode 100644 weapons/nmap.yaml create mode 100644 weapons/nosqli.yaml create mode 100644 weapons/nuclei.yaml create mode 100644 weapons/ob_hacky_slack.yaml create mode 100644 weapons/owasp-zap-jwt-addon.yaml create mode 100644 weapons/oxml_xxe.yaml create mode 100644 weapons/pagodo.yaml create mode 100644 weapons/param-miner.yaml create mode 100644 weapons/parameth.yaml create mode 100644 weapons/pentest-tools.yaml create mode 100644 weapons/pet.yaml create mode 100644 weapons/plution.yaml create mode 100644 weapons/postMessage-tracker.yaml create mode 100644 weapons/ppfuzz.yaml create mode 100644 weapons/ppmap.yaml create mode 100644 weapons/proxify.yaml create mode 100644 weapons/puredns.yaml create mode 100644 weapons/pwncat.yaml create mode 100644 weapons/qsreplace.yaml create mode 100644 weapons/quickjack.yaml create mode 100644 weapons/rapidscan.yaml create mode 100644 weapons/recon_profile.yaml create mode 100644 weapons/reconftw.yaml create mode 100644 weapons/reflect.yaml create mode 100644 weapons/reflected-parameters.yaml create mode 100644 weapons/rengine.yaml create mode 100644 weapons/rusolver.yaml create mode 100644 weapons/s3reverse.yaml create mode 100644 weapons/safecopy.yaml create mode 100644 weapons/scilla.yaml create mode 100644 weapons/security-crawl-maze.yaml create mode 100644 weapons/security-research-pocs.yaml create mode 100644 weapons/shuffledns.yaml create mode 100644 weapons/singularity.yaml create mode 100644 weapons/slackcat.yaml create mode 100644 weapons/smuggler.yaml create mode 100644 weapons/sn0int.yaml create mode 100644 weapons/spiderfoot.yaml create mode 100644 weapons/sqliv.yaml create mode 100644 weapons/sqlmap.yaml create mode 100644 weapons/ssrf-sheriff.yaml create mode 100644 weapons/subfinder.yaml create mode 100644 weapons/subgen.yaml create mode 100644 weapons/subjack.yaml create mode 100644 weapons/subjs.yaml create mode 100644 weapons/subs_all.yaml create mode 100644 weapons/subzy.yaml create mode 100644 weapons/taborator.yaml create mode 100644 weapons/template-generator.yaml create mode 100644 weapons/testssl.sh.yaml create mode 100644 weapons/thc-hydra.yaml create mode 100644 weapons/tiscripts.yaml create mode 100644 weapons/tplmap.yaml create mode 100644 weapons/turbo-intruder.yaml create mode 100644 weapons/uncover.yaml create mode 100644 weapons/unfurl.yaml create mode 100644 weapons/urlgrab.yaml create mode 100644 weapons/urlhunter.yaml create mode 100644 weapons/urlprobe.yaml create mode 100644 weapons/uro.yaml create mode 100644 weapons/waybackurls.yaml create mode 100644 weapons/weaponised-XSS-payloads.yaml create mode 100644 weapons/web_cache_poison.yaml create mode 100644 weapons/websocket-connection-smuggler.yaml create mode 100644 weapons/wfuzz.yaml create mode 100644 weapons/wprecon.yaml create mode 100644 weapons/wpscan.yaml create mode 100644 weapons/ws-smuggler.yaml create mode 100644 weapons/wssip.yaml create mode 100644 weapons/wuzz.yaml create mode 100644 weapons/x8.yaml create mode 100644 weapons/xsinator.com.yaml create mode 100644 weapons/xss-cheatsheet-data.yaml create mode 100644 weapons/xsscrapy.yaml create mode 100644 weapons/xsser.yaml create mode 100644 weapons/xssor2.yaml create mode 100644 weapons/xxeserv.yaml create mode 100644 weapons/ysoserial.net.yaml create mode 100644 weapons/ysoserial.yaml create mode 100644 weapons/zap-cli.yaml create mode 100644 weapons/zap-hud.yaml create mode 100644 weapons/zaproxy.yaml create mode 100644 weapons/zdns.yaml diff --git a/scripts/migration.rb b/scripts/migration.rb index 5ea0575..fd8ed30 100644 --- a/scripts/migration.rb +++ b/scripts/migration.rb @@ -44,6 +44,12 @@ def get_urls str return URI.extract(str).uniq end +def get_lang url + if url.include? "https://github.com" + + end +end + def migrate jsonfile, category file = File.read(jsonfile) data_hash = JSON.parse(file) @@ -73,7 +79,7 @@ def migrate jsonfile, category # Save yaml file puts filename - #File.write("./weapons/#{filename}", yaml_data) + File.write("./weapons/#{filename}", yaml_data) end end diff --git a/template/foot.md b/template/foot.md deleted file mode 100644 index a79f0ae..0000000 --- a/template/foot.md +++ /dev/null @@ -1,4 +0,0 @@ - -## Thanks to (Contributor) -I would like to thank everyone who helped with this project 👍😎 -![](/CONTRIBUTORS.svg) diff --git a/template/head.md b/template/head.md deleted file mode 100644 index d18def1..0000000 --- a/template/head.md +++ /dev/null @@ -1,32 +0,0 @@ -

-
- -
- - - - - - -

-A collection of cool tools used by Web hackers. Happy hacking , Happy bug-hunting - -## Family project -[![WebHackersWeapons](https://img.shields.io/github/stars/hahwul/WebHackersWeapons?label=WebHackersWeapons)](https://github.com/hahwul/WebHackersWeapons) -[![MobileHackersWeapons](https://img.shields.io/github/stars/hahwul/MobileHackersWeapons?label=MobileHackersWeapons)](https://github.com/hahwul/MobileHackersWeapons) - -## Table of Contents -- [WHW-Tools](https://whw-tools.hahwul.com) -- [Weapons](#weapons) -- [Awesome Bookmarklets](https://github.com/hahwul/WebHackersWeapons/tree/master/Bookmarklets) -- [Awesome Browser Extensions](https://github.com/hahwul/WebHackersWeapons/tree/master/Browser%20Extensions) -- [Awesome Burp and ZAP Extensions](https://github.com/hahwul/WebHackersWeapons/tree/master/Burp%20and%20ZAP%20Extensions) -- [Contribute](https://github.com/hahwul/WebHackersWeapons/blob/master/CONTRIBUTING.md) -- [Thanks to contributor](#thanks-to-contributor) - -## WHW-Tools -> Always use the latest tools 😎 - -`WHW-Tools` is tools web of `#WebHackersWeapons`. Easy install and Easy manage upgrade. Go to [WHW-Tools](https://whw-tools.hahwul.com/) - -## Weapons diff --git a/weapons/230-OOB.yaml b/weapons/230-OOB.yaml new file mode 100644 index 0000000..d8668ee --- /dev/null +++ b/weapons/230-OOB.yaml @@ -0,0 +1,12 @@ +--- +name: 230-OOB +description: An Out-of-Band XXE server for retrieving file contents over FTP. +urls: +- https://github.com/lc/230-OOB) +- https://img.shields.io/github/stars/lc/230-OOB) +- https://img.shields.io/github/languages/top/lc/230-OOB) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/3klCon.yaml b/weapons/3klCon.yaml new file mode 100644 index 0000000..e0a7ee1 --- /dev/null +++ b/weapons/3klCon.yaml @@ -0,0 +1,13 @@ +--- +name: 3klCon +description: Automation Recon tool which works with Large & Medium scopes. It performs + more than 20 tasks and gets back all the results in separated files. +urls: +- https://github.com/eslam3kl/3klCon) +- https://img.shields.io/github/stars/eslam3kl/3klCon) +- https://img.shields.io/github/languages/top/eslam3kl/3klCon) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/AWSBucketDump.yaml b/weapons/AWSBucketDump.yaml new file mode 100644 index 0000000..a9cfe58 --- /dev/null +++ b/weapons/AWSBucketDump.yaml @@ -0,0 +1,12 @@ +--- +name: AWSBucketDump +description: Security Tool to Look For Interesting Files in S3 Buckets +urls: +- https://github.com/jordanpotti/AWSBucketDump) +- https://img.shields.io/github/stars/jordanpotti/AWSBucketDump) +- https://img.shields.io/github/languages/top/jordanpotti/AWSBucketDump) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/Amass.yaml b/weapons/Amass.yaml new file mode 100644 index 0000000..9f05cfa --- /dev/null +++ b/weapons/Amass.yaml @@ -0,0 +1,14 @@ +--- +name: Amass +description: 'In-depth Attack Surface Mapping and Asset Discovery ' +urls: +- https://github.com/OWASP/Amass) +- https://img.shields.io/github/stars/OWASP/Amass) +- https://img.shields.io/github/languages/top/OWASP/Amass) +category: tool +types: [] +platform: +- linux +- macos +lang: [] +tags: [] diff --git a/weapons/Arjun.yaml b/weapons/Arjun.yaml new file mode 100644 index 0000000..777782a --- /dev/null +++ b/weapons/Arjun.yaml @@ -0,0 +1,15 @@ +--- +name: Arjun +description: 'HTTP parameter discovery suite. ' +urls: +- https://github.com/s0md3v/Arjun) +- https://img.shields.io/github/stars/s0md3v/Arjun) +- https://img.shields.io/github/languages/top/s0md3v/Arjun) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/Assetnote_Wordlists.yaml b/weapons/Assetnote_Wordlists.yaml new file mode 100644 index 0000000..ebafb17 --- /dev/null +++ b/weapons/Assetnote_Wordlists.yaml @@ -0,0 +1,15 @@ +--- +name: Assetnote Wordlists +description: Automated & Manual Wordlists provided by Assetnote +urls: +- https://github.com/assetnote/wordlists) +- https://img.shields.io/github/stars/assetnote/wordlists) +- https://img.shields.io/github/languages/top/assetnote/wordlists) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/Atlas.yaml b/weapons/Atlas.yaml new file mode 100644 index 0000000..7b12922 --- /dev/null +++ b/weapons/Atlas.yaml @@ -0,0 +1,15 @@ +--- +name: Atlas +description: 'Quick SQLMap Tamper Suggester ' +urls: +- https://github.com/m4ll0k/Atlas) +- https://img.shields.io/github/stars/m4ll0k/Atlas) +- https://img.shields.io/github/languages/top/m4ll0k/Atlas) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/AuthMatrix.yaml b/weapons/AuthMatrix.yaml new file mode 100644 index 0000000..c47de09 --- /dev/null +++ b/weapons/AuthMatrix.yaml @@ -0,0 +1,13 @@ +--- +name: AuthMatrix +description: +urls: +- https://github.com/SecurityInnovation/AuthMatrix) +- https://img.shields.io/github/stars/SecurityInnovation/AuthMatrix) +- https://img.shields.io/github/languages/top/SecurityInnovation/AuthMatrix) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/Autorize.yaml b/weapons/Autorize.yaml new file mode 100644 index 0000000..1771858 --- /dev/null +++ b/weapons/Autorize.yaml @@ -0,0 +1,13 @@ +--- +name: Autorize +description: +urls: +- https://github.com/Quitten/Autorize) +- https://img.shields.io/github/stars/Quitten/Autorize) +- https://img.shields.io/github/languages/top/Quitten/Autorize) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/Blacklist3r.yaml b/weapons/Blacklist3r.yaml new file mode 100644 index 0000000..3a355d0 --- /dev/null +++ b/weapons/Blacklist3r.yaml @@ -0,0 +1,12 @@ +--- +name: Blacklist3r +description: 'project-blacklist3r ' +urls: +- https://github.com/NotSoSecure/Blacklist3r) +- https://img.shields.io/github/stars/NotSoSecure/Blacklist3r) +- https://img.shields.io/github/languages/top/NotSoSecure/Blacklist3r) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/BruteX.yaml b/weapons/BruteX.yaml new file mode 100644 index 0000000..0201932 --- /dev/null +++ b/weapons/BruteX.yaml @@ -0,0 +1,12 @@ +--- +name: BruteX +description: Automatically brute force all services running on a target. +urls: +- https://github.com/1N3/BruteX) +- https://img.shields.io/github/stars/1N3/BruteX) +- https://img.shields.io/github/languages/top/1N3/BruteX) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/Bug-Bounty-Toolz.yaml b/weapons/Bug-Bounty-Toolz.yaml new file mode 100644 index 0000000..8aaaefb --- /dev/null +++ b/weapons/Bug-Bounty-Toolz.yaml @@ -0,0 +1,12 @@ +--- +name: Bug-Bounty-Toolz +description: 'BBT - Bug Bounty Tools ' +urls: +- https://github.com/m4ll0k/Bug-Bounty-Toolz) +- https://img.shields.io/github/stars/m4ll0k/Bug-Bounty-Toolz) +- https://img.shields.io/github/languages/top/m4ll0k/Bug-Bounty-Toolz) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/BurpBounty.yaml b/weapons/BurpBounty.yaml new file mode 100644 index 0000000..a60a4f3 --- /dev/null +++ b/weapons/BurpBounty.yaml @@ -0,0 +1,13 @@ +--- +name: BurpBounty +description: +urls: +- https://github.com/wagiro/BurpBounty) +- https://img.shields.io/github/stars/wagiro/BurpBounty) +- https://img.shields.io/github/languages/top/wagiro/BurpBounty) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/BurpCustomizer.yaml b/weapons/BurpCustomizer.yaml new file mode 100644 index 0000000..e00ae5d --- /dev/null +++ b/weapons/BurpCustomizer.yaml @@ -0,0 +1,13 @@ +--- +name: BurpCustomizer +description: Because just a dark theme wasn't enough! +urls: +- https://github.com/CoreyD97/BurpCustomizer) +- https://img.shields.io/github/stars/CoreyD97/BurpCustomizer) +- https://img.shields.io/github/languages/top/CoreyD97/BurpCustomizer) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/BurpJSLinkFinder.yaml b/weapons/BurpJSLinkFinder.yaml new file mode 100644 index 0000000..1c26643 --- /dev/null +++ b/weapons/BurpJSLinkFinder.yaml @@ -0,0 +1,13 @@ +--- +name: BurpJSLinkFinder +description: +urls: +- https://github.com/InitRoot/BurpJSLinkFinder) +- https://img.shields.io/github/stars/InitRoot/BurpJSLinkFinder) +- https://img.shields.io/github/languages/top/InitRoot/BurpJSLinkFinder) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/BurpSuite-Secret_Finder.yaml b/weapons/BurpSuite-Secret_Finder.yaml new file mode 100644 index 0000000..fc549d4 --- /dev/null +++ b/weapons/BurpSuite-Secret_Finder.yaml @@ -0,0 +1,13 @@ +--- +name: BurpSuite-Secret_Finder +description: +urls: +- https://github.com/m4ll0k/BurpSuite-Secret_Finder) +- https://img.shields.io/github/stars/m4ll0k/BurpSuite-Secret_Finder) +- https://img.shields.io/github/languages/top/m4ll0k/BurpSuite-Secret_Finder) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/BurpSuite.yaml b/weapons/BurpSuite.yaml new file mode 100644 index 0000000..b9da140 --- /dev/null +++ b/weapons/BurpSuite.yaml @@ -0,0 +1,11 @@ +--- +name: BurpSuite +description: the BurpSuite Project +urls: +- https://portswigger.net/burp) +- https://img.shields.io/static/v1?label=&message=it's%20not%20github&color=gray) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/BurpSuiteHTTPSmuggler.yaml b/weapons/BurpSuiteHTTPSmuggler.yaml new file mode 100644 index 0000000..7ff8c86 --- /dev/null +++ b/weapons/BurpSuiteHTTPSmuggler.yaml @@ -0,0 +1,13 @@ +--- +name: BurpSuiteHTTPSmuggler +description: +urls: +- https://github.com/nccgroup/BurpSuiteHTTPSmuggler) +- https://img.shields.io/github/stars/nccgroup/BurpSuiteHTTPSmuggler) +- https://img.shields.io/github/languages/top/nccgroup/BurpSuiteHTTPSmuggler) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/BurpSuiteLoggerPlusPlus.yaml b/weapons/BurpSuiteLoggerPlusPlus.yaml new file mode 100644 index 0000000..5774b3b --- /dev/null +++ b/weapons/BurpSuiteLoggerPlusPlus.yaml @@ -0,0 +1,13 @@ +--- +name: BurpSuiteLoggerPlusPlus +description: +urls: +- https://github.com/nccgroup/BurpSuiteLoggerPlusPlus) +- https://img.shields.io/github/stars/nccgroup/BurpSuiteLoggerPlusPlus) +- https://img.shields.io/github/languages/top/nccgroup/BurpSuiteLoggerPlusPlus) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/CSP_Evaluator.yaml b/weapons/CSP_Evaluator.yaml new file mode 100644 index 0000000..536eed0 --- /dev/null +++ b/weapons/CSP_Evaluator.yaml @@ -0,0 +1,11 @@ +--- +name: CSP Evaluator +description: " Online CSP Evaluator from google|![](https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray) " +urls: +- https://csp-evaluator.withgoogle.com +- https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/CT_subdomains.yaml b/weapons/CT_subdomains.yaml new file mode 100644 index 0000000..42e930d --- /dev/null +++ b/weapons/CT_subdomains.yaml @@ -0,0 +1,13 @@ +--- +name: CT_subdomains +description: 'An hourly updated list of subdomains gathered from certificate transparency + logs ' +urls: +- https://github.com/internetwache/CT_subdomains) +- https://img.shields.io/github/stars/internetwache/CT_subdomains) +- https://img.shields.io/github/languages/top/internetwache/CT_subdomains) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/Chaos_Web.yaml b/weapons/Chaos_Web.yaml new file mode 100644 index 0000000..15c3a2d --- /dev/null +++ b/weapons/Chaos_Web.yaml @@ -0,0 +1,12 @@ +--- +name: Chaos Web +description: " actively scan and maintain internet-wide assets' data. enhance research + and analyse changes around DNS for better insights.|![](https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray)|![](https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray)" +urls: +- https://chaos.projectdiscovery.io +- https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/Chromium-based-XSS-Taint-Tracking.yaml b/weapons/Chromium-based-XSS-Taint-Tracking.yaml new file mode 100644 index 0000000..e04863f --- /dev/null +++ b/weapons/Chromium-based-XSS-Taint-Tracking.yaml @@ -0,0 +1,13 @@ +--- +name: Chromium-based-XSS-Taint-Tracking +description: Cyclops is a web browser with XSS detection feature, it is chromium-based + xss detection that used to find the flows from a source to a sink. +urls: +- https://github.com/v8blink/Chromium-based-XSS-Taint-Tracking) +- https://img.shields.io/github/stars/v8blink/Chromium-based-XSS-Taint-Tracking) +- https://img.shields.io/github/languages/top/v8blink/Chromium-based-XSS-Taint-Tracking) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/CorsMe.yaml b/weapons/CorsMe.yaml new file mode 100644 index 0000000..1ba5dc7 --- /dev/null +++ b/weapons/CorsMe.yaml @@ -0,0 +1,15 @@ +--- +name: CorsMe +description: 'Cross Origin Resource Sharing MisConfiguration Scanner ' +urls: +- https://github.com/Shivangx01b/CorsMe) +- https://img.shields.io/github/stars/Shivangx01b/CorsMe) +- https://img.shields.io/github/languages/top/Shivangx01b/CorsMe) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/Corsy.yaml b/weapons/Corsy.yaml new file mode 100644 index 0000000..095062f --- /dev/null +++ b/weapons/Corsy.yaml @@ -0,0 +1,15 @@ +--- +name: Corsy +description: 'CORS Misconfiguration Scanner ' +urls: +- https://github.com/s0md3v/Corsy) +- https://img.shields.io/github/stars/s0md3v/Corsy) +- https://img.shields.io/github/languages/top/s0md3v/Corsy) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/CyberChef.yaml b/weapons/CyberChef.yaml new file mode 100644 index 0000000..332d560 --- /dev/null +++ b/weapons/CyberChef.yaml @@ -0,0 +1,13 @@ +--- +name: CyberChef +description: 'The Cyber Swiss Army Knife - a web app for encryption, encoding, compression + and data analysis ' +urls: +- https://github.com/gchq/CyberChef) +- https://img.shields.io/github/stars/gchq/CyberChef) +- https://img.shields.io/github/languages/top/gchq/CyberChef) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/DNSDumpster.yaml b/weapons/DNSDumpster.yaml new file mode 100644 index 0000000..528c0ba --- /dev/null +++ b/weapons/DNSDumpster.yaml @@ -0,0 +1,11 @@ +--- +name: DNSDumpster +description: " Online dns recon & research, find & lookup dns records|![](https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray) " +urls: +- https://dnsdumpster.com +- https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/DOMPurify.yaml b/weapons/DOMPurify.yaml new file mode 100644 index 0000000..b4bb921 --- /dev/null +++ b/weapons/DOMPurify.yaml @@ -0,0 +1,15 @@ +--- +name: DOMPurify +description: 'DOMPurify - a DOM-only, super-fast, uber-tolerant XSS sanitizer for + HTML, MathML and SVG. DOMPurify works with a secure default, but offers a lot of + configurability and hooks. Demo:' +urls: +- https://github.com/cure53/DOMPurify) +- 'Demo:' +- https://img.shields.io/github/stars/cure53/DOMPurify) +- https://img.shields.io/github/languages/top/cure53/DOMPurify) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/DSSS.yaml b/weapons/DSSS.yaml new file mode 100644 index 0000000..d630c9c --- /dev/null +++ b/weapons/DSSS.yaml @@ -0,0 +1,12 @@ +--- +name: DSSS +description: Damn Small SQLi Scanner +urls: +- https://github.com/stamparm/DSSS) +- https://img.shields.io/github/stars/stamparm/DSSS) +- https://img.shields.io/github/languages/top/stamparm/DSSS) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/Dark_Reader.yaml b/weapons/Dark_Reader.yaml new file mode 100644 index 0000000..8800447 --- /dev/null +++ b/weapons/Dark_Reader.yaml @@ -0,0 +1,13 @@ +--- +name: Dark Reader +description: Dark mode to any site +urls: +- https://chrome.google.com/webstore/detail/dark-reader/eimadpbcbfnmbkopoojfekhnkhdbieeh) +- https://img.shields.io/static/v1?label=&message=it's%20not%20github&color=gray) +category: browser-addon +types: [] +platform: +- chrome +- firefox +lang: [] +tags: [] diff --git a/weapons/Dark_Reader_for_Safari.yaml b/weapons/Dark_Reader_for_Safari.yaml new file mode 100644 index 0000000..ad3de67 --- /dev/null +++ b/weapons/Dark_Reader_for_Safari.yaml @@ -0,0 +1,12 @@ +--- +name: Dark Reader for Safari +description: Dark mode to any site +urls: +- https://apps.apple.com/us/app/dark-reader-for-safari/id1438243180) +- https://img.shields.io/static/v1?label=&message=it's%20not%20github&color=gray) +category: browser-addon +types: [] +platform: +- safari +lang: [] +tags: [] diff --git a/weapons/DeepViolet.yaml b/weapons/DeepViolet.yaml new file mode 100644 index 0000000..b995dbd --- /dev/null +++ b/weapons/DeepViolet.yaml @@ -0,0 +1,12 @@ +--- +name: DeepViolet +description: Tool for introspection of SSL\TLS sessions +urls: +- https://github.com/spoofzu/DeepViolet) +- https://img.shields.io/github/stars/spoofzu/DeepViolet) +- https://img.shields.io/github/languages/top/spoofzu/DeepViolet) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/DirDar.yaml b/weapons/DirDar.yaml new file mode 100644 index 0000000..a443fba --- /dev/null +++ b/weapons/DirDar.yaml @@ -0,0 +1,13 @@ +--- +name: DirDar +description: DirDar is a tool that searches for (403-Forbidden) directories to break + it and get dir listing on it +urls: +- https://github.com/M4DM0e/DirDar) +- https://img.shields.io/github/stars/M4DM0e/DirDar) +- https://img.shields.io/github/languages/top/M4DM0e/DirDar) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/DotGit.yaml b/weapons/DotGit.yaml new file mode 100644 index 0000000..f177dd3 --- /dev/null +++ b/weapons/DotGit.yaml @@ -0,0 +1,14 @@ +--- +name: DotGit +description: An extension for checking if .git is exposed in visited websites +urls: +- https://github.com/davtur19/DotGit) +- https://img.shields.io/github/stars/davtur19/DotGit) +- https://img.shields.io/github/languages/top/davtur19/DotGit) +category: browser-addon +types: [] +platform: +- chrome +- firefox +lang: [] +tags: [] diff --git a/weapons/Edit-This-Cookie.yaml b/weapons/Edit-This-Cookie.yaml new file mode 100644 index 0000000..cc3c897 --- /dev/null +++ b/weapons/Edit-This-Cookie.yaml @@ -0,0 +1,14 @@ +--- +name: Edit-This-Cookie +description: EditThisCookie is the famous Google Chrome/Chromium extension for editing + cookies +urls: +- https://github.com/ETCExtensions/Edit-This-Cookie) +- https://img.shields.io/github/stars/ETCExtensions/Edit-This-Cookie) +- https://img.shields.io/github/languages/top/ETCExtensions/Edit-This-Cookie) +category: browser-addon +types: [] +platform: +- chrome +lang: [] +tags: [] diff --git a/weapons/Emissary.yaml b/weapons/Emissary.yaml new file mode 100644 index 0000000..30b9167 --- /dev/null +++ b/weapons/Emissary.yaml @@ -0,0 +1,13 @@ +--- +name: Emissary +description: Send notifications on different channels such as Slack, Telegram, Discord + etc. +urls: +- https://github.com/BountyStrike/Emissary) +- https://img.shields.io/github/stars/BountyStrike/Emissary) +- https://img.shields.io/github/languages/top/BountyStrike/Emissary) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/FavFreak.yaml b/weapons/FavFreak.yaml new file mode 100644 index 0000000..ea8c50c --- /dev/null +++ b/weapons/FavFreak.yaml @@ -0,0 +1,15 @@ +--- +name: FavFreak +description: 'Making Favicon.ico based Recon Great again ! ' +urls: +- https://github.com/devanshbatham/FavFreak) +- https://img.shields.io/github/stars/devanshbatham/FavFreak) +- https://img.shields.io/github/languages/top/devanshbatham/FavFreak) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/Findsploit.yaml b/weapons/Findsploit.yaml new file mode 100644 index 0000000..9a22722 --- /dev/null +++ b/weapons/Findsploit.yaml @@ -0,0 +1,12 @@ +--- +name: Findsploit +description: Find exploits in local and online databases instantly +urls: +- https://github.com/1N3/Findsploit) +- https://img.shields.io/github/stars/1N3/Findsploit) +- https://img.shields.io/github/languages/top/1N3/Findsploit) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/Gf-Patterns.yaml b/weapons/Gf-Patterns.yaml new file mode 100644 index 0000000..547f75c --- /dev/null +++ b/weapons/Gf-Patterns.yaml @@ -0,0 +1,16 @@ +--- +name: Gf-Patterns +description: 'GF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic) + parameters grep ' +urls: +- https://github.com/1ndianl33t/Gf-Patterns) +- https://img.shields.io/github/stars/1ndianl33t/Gf-Patterns) +- https://img.shields.io/github/languages/top/1ndianl33t/Gf-Patterns) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/GitMiner.yaml b/weapons/GitMiner.yaml new file mode 100644 index 0000000..6ffda62 --- /dev/null +++ b/weapons/GitMiner.yaml @@ -0,0 +1,15 @@ +--- +name: GitMiner +description: 'Tool for advanced mining for content on Github ' +urls: +- https://github.com/UnkL4b/GitMiner) +- https://img.shields.io/github/stars/UnkL4b/GitMiner) +- https://img.shields.io/github/languages/top/UnkL4b/GitMiner) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/Gopherus.yaml b/weapons/Gopherus.yaml new file mode 100644 index 0000000..b01435f --- /dev/null +++ b/weapons/Gopherus.yaml @@ -0,0 +1,16 @@ +--- +name: Gopherus +description: 'This tool generates gopher link for exploiting SSRF and gaining RCE + in various servers ' +urls: +- https://github.com/tarunkant/Gopherus) +- https://img.shields.io/github/stars/tarunkant/Gopherus) +- https://img.shields.io/github/languages/top/tarunkant/Gopherus) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/GraphQLmap.yaml b/weapons/GraphQLmap.yaml new file mode 100644 index 0000000..e820337 --- /dev/null +++ b/weapons/GraphQLmap.yaml @@ -0,0 +1,16 @@ +--- +name: GraphQLmap +description: 'GraphQLmap is a scripting engine to interact with a graphql endpoint + for pentesting purposes. ' +urls: +- https://github.com/swisskyrepo/GraphQLmap) +- https://img.shields.io/github/stars/swisskyrepo/GraphQLmap) +- https://img.shields.io/github/languages/top/swisskyrepo/GraphQLmap) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/HRS.yaml b/weapons/HRS.yaml new file mode 100644 index 0000000..4da51a5 --- /dev/null +++ b/weapons/HRS.yaml @@ -0,0 +1,13 @@ +--- +name: HRS +description: HTTP Request Smuggling demonstration Perl script, for variants 1, 2 and + 5 in my BlackHat US 2020 paper HTTP Request Smuggling in 2020. +urls: +- https://github.com/SafeBreach-Labs/HRS) +- https://img.shields.io/github/stars/SafeBreach-Labs/HRS) +- https://img.shields.io/github/languages/top/SafeBreach-Labs/HRS) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/HUNT.yaml b/weapons/HUNT.yaml new file mode 100644 index 0000000..16bc893 --- /dev/null +++ b/weapons/HUNT.yaml @@ -0,0 +1,14 @@ +--- +name: HUNT +description: +urls: +- https://github.com/bugcrowd/HUNT) +- https://img.shields.io/github/stars/bugcrowd/HUNT) +- https://img.shields.io/github/languages/top/bugcrowd/HUNT) +category: tool-addon +types: [] +platform: +- burpsuite +- zap +lang: [] +tags: [] diff --git a/weapons/Hack-Tools.yaml b/weapons/Hack-Tools.yaml new file mode 100644 index 0000000..fc5bd04 --- /dev/null +++ b/weapons/Hack-Tools.yaml @@ -0,0 +1,14 @@ +--- +name: Hack-Tools +description: "The all-in-one Red Team extension for Web Pentester \U0001F6E0" +urls: +- https://github.com/LasCC/Hack-Tools) +- https://img.shields.io/github/stars/LasCC/Hack-Tools) +- https://img.shields.io/github/languages/top/LasCC/Hack-Tools) +category: browser-addon +types: [] +platform: +- chrome +- firefox +lang: [] +tags: [] diff --git a/weapons/HydraRecon.yaml b/weapons/HydraRecon.yaml new file mode 100644 index 0000000..02ced66 --- /dev/null +++ b/weapons/HydraRecon.yaml @@ -0,0 +1,12 @@ +--- +name: HydraRecon +description: All In One, Fast, Easy Recon Tool +urls: +- https://github.com/aufzayed/HydraRecon) +- https://img.shields.io/github/stars/aufzayed/HydraRecon) +- https://img.shields.io/github/languages/top/aufzayed/HydraRecon) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/IntruderPayloads.yaml b/weapons/IntruderPayloads.yaml new file mode 100644 index 0000000..4a4238a --- /dev/null +++ b/weapons/IntruderPayloads.yaml @@ -0,0 +1,13 @@ +--- +name: IntruderPayloads +description: +urls: +- https://github.com/1N3/IntruderPayloads) +- https://img.shields.io/github/stars/1N3/IntruderPayloads) +- https://img.shields.io/github/languages/top/1N3/IntruderPayloads) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/JSFScan.sh.yaml b/weapons/JSFScan.sh.yaml new file mode 100644 index 0000000..435809e --- /dev/null +++ b/weapons/JSFScan.sh.yaml @@ -0,0 +1,14 @@ +--- +name: JSFScan.sh +description: 'Automation for javascript recon in bug bounty. ' +urls: +- https://github.com/KathanP19/JSFScan.sh) +- https://img.shields.io/github/stars/KathanP19/JSFScan.sh) +- https://img.shields.io/github/languages/top/KathanP19/JSFScan.sh) +category: tool +types: [] +platform: +- linux +- macos +lang: [] +tags: [] diff --git a/weapons/LFISuite.yaml b/weapons/LFISuite.yaml new file mode 100644 index 0000000..f605e7d --- /dev/null +++ b/weapons/LFISuite.yaml @@ -0,0 +1,15 @@ +--- +name: LFISuite +description: 'Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner ' +urls: +- https://github.com/D35m0nd142/LFISuite) +- https://img.shields.io/github/stars/D35m0nd142/LFISuite) +- https://img.shields.io/github/languages/top/D35m0nd142/LFISuite) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/LinkFinder.yaml b/weapons/LinkFinder.yaml new file mode 100644 index 0000000..43b0654 --- /dev/null +++ b/weapons/LinkFinder.yaml @@ -0,0 +1,15 @@ +--- +name: LinkFinder +description: 'A python script that finds endpoints in JavaScript files ' +urls: +- https://github.com/GerbenJavado/LinkFinder) +- https://img.shields.io/github/stars/GerbenJavado/LinkFinder) +- https://img.shields.io/github/languages/top/GerbenJavado/LinkFinder) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/MM3_ProxySwitch.yaml b/weapons/MM3_ProxySwitch.yaml new file mode 100644 index 0000000..76a3096 --- /dev/null +++ b/weapons/MM3_ProxySwitch.yaml @@ -0,0 +1,13 @@ +--- +name: MM3 ProxySwitch +description: Proxy Switch in Firefox and Chrome +urls: +- https://proxy-offline-browser.com/ProxySwitch/) +- https://img.shields.io/static/v1?label=&message=it's%20not%20github&color=gray) +category: browser-addon +types: [] +platform: +- chrome +- firefox +lang: [] +tags: [] diff --git a/weapons/NoSQLMap.yaml b/weapons/NoSQLMap.yaml new file mode 100644 index 0000000..3f28e2f --- /dev/null +++ b/weapons/NoSQLMap.yaml @@ -0,0 +1,16 @@ +--- +name: NoSQLMap +description: 'Automated NoSQL database enumeration and web application exploitation + tool. ' +urls: +- https://github.com/codingo/NoSQLMap) +- https://img.shields.io/github/stars/codingo/NoSQLMap) +- https://img.shields.io/github/languages/top/codingo/NoSQLMap) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/OneForAll.yaml b/weapons/OneForAll.yaml new file mode 100644 index 0000000..d4008b2 --- /dev/null +++ b/weapons/OneForAll.yaml @@ -0,0 +1,15 @@ +--- +name: OneForAll +description: 'OneForAll是一款功能强大的子域收集工具 ' +urls: +- https://github.com/shmilylty/OneForAll) +- https://img.shields.io/github/stars/shmilylty/OneForAll) +- https://img.shields.io/github/languages/top/shmilylty/OneForAll) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/OpenRedireX.yaml b/weapons/OpenRedireX.yaml new file mode 100644 index 0000000..e687642 --- /dev/null +++ b/weapons/OpenRedireX.yaml @@ -0,0 +1,12 @@ +--- +name: OpenRedireX +description: A Fuzzer for OpenRedirect issues +urls: +- https://github.com/devanshbatham/OpenRedireX) +- https://img.shields.io/github/stars/devanshbatham/OpenRedireX) +- https://img.shields.io/github/languages/top/devanshbatham/OpenRedireX) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/Osmedeus.yaml b/weapons/Osmedeus.yaml new file mode 100644 index 0000000..63df72a --- /dev/null +++ b/weapons/Osmedeus.yaml @@ -0,0 +1,16 @@ +--- +name: Osmedeus +description: 'Fully automated offensive security framework for reconnaissance and + vulnerability scanning ' +urls: +- https://github.com/j3ssie/Osmedeus) +- https://img.shields.io/github/stars/j3ssie/Osmedeus) +- https://img.shields.io/github/languages/top/j3ssie/Osmedeus) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/PPScan.yaml b/weapons/PPScan.yaml new file mode 100644 index 0000000..3449788 --- /dev/null +++ b/weapons/PPScan.yaml @@ -0,0 +1,12 @@ +--- +name: PPScan +description: Client Side Prototype Pollution Scanner +urls: +- https://github.com/msrkp/PPScan) +- https://img.shields.io/github/stars/msrkp/PPScan) +- https://img.shields.io/github/languages/top/msrkp/PPScan) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/ParamSpider.yaml b/weapons/ParamSpider.yaml new file mode 100644 index 0000000..7706b1e --- /dev/null +++ b/weapons/ParamSpider.yaml @@ -0,0 +1,15 @@ +--- +name: ParamSpider +description: 'Mining parameters from dark corners of Web Archives ' +urls: +- https://github.com/devanshbatham/ParamSpider) +- https://img.shields.io/github/stars/devanshbatham/ParamSpider) +- https://img.shields.io/github/languages/top/devanshbatham/ParamSpider) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/Parth.yaml b/weapons/Parth.yaml new file mode 100644 index 0000000..aadc050 --- /dev/null +++ b/weapons/Parth.yaml @@ -0,0 +1,15 @@ +--- +name: Parth +description: 'Heuristic Vulnerable Parameter Scanner ' +urls: +- https://github.com/s0md3v/Parth) +- https://img.shields.io/github/stars/s0md3v/Parth) +- https://img.shields.io/github/languages/top/s0md3v/Parth) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/PayloadsAllTheThings.yaml b/weapons/PayloadsAllTheThings.yaml new file mode 100644 index 0000000..9f9327a --- /dev/null +++ b/weapons/PayloadsAllTheThings.yaml @@ -0,0 +1,13 @@ +--- +name: PayloadsAllTheThings +description: 'A list of useful payloads and bypass for Web Application Security and + Pentest/CTF ' +urls: +- https://github.com/swisskyrepo/PayloadsAllTheThings) +- https://img.shields.io/github/stars/swisskyrepo/PayloadsAllTheThings) +- https://img.shields.io/github/languages/top/swisskyrepo/PayloadsAllTheThings) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/Phoenix.yaml b/weapons/Phoenix.yaml new file mode 100644 index 0000000..ceabd29 --- /dev/null +++ b/weapons/Phoenix.yaml @@ -0,0 +1,11 @@ +--- +name: Phoenix +description: " hahwul's online tools|![](https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray) " +urls: +- https://www.hahwul.com/p/phoenix.html) +- https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/Photon.yaml b/weapons/Photon.yaml new file mode 100644 index 0000000..346d75b --- /dev/null +++ b/weapons/Photon.yaml @@ -0,0 +1,15 @@ +--- +name: Photon +description: 'Incredibly fast crawler designed for OSINT. ' +urls: +- https://github.com/s0md3v/Photon) +- https://img.shields.io/github/stars/s0md3v/Photon) +- https://img.shields.io/github/languages/top/s0md3v/Photon) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/PoC-in-GitHub.yaml b/weapons/PoC-in-GitHub.yaml new file mode 100644 index 0000000..8f48564 --- /dev/null +++ b/weapons/PoC-in-GitHub.yaml @@ -0,0 +1,12 @@ +--- +name: PoC-in-GitHub +description: "\U0001F4E1 PoC auto collect from GitHub. Be careful malware." +urls: +- https://github.com/nomi-sec/PoC-in-GitHub) +- https://img.shields.io/github/stars/nomi-sec/PoC-in-GitHub) +- https://img.shields.io/github/languages/top/nomi-sec/PoC-in-GitHub) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/RustScan.yaml b/weapons/RustScan.yaml new file mode 100644 index 0000000..4c4d12d --- /dev/null +++ b/weapons/RustScan.yaml @@ -0,0 +1,15 @@ +--- +name: RustScan +description: 'Faster Nmap Scanning with Rust ' +urls: +- https://github.com/brandonskerritt/RustScan) +- https://img.shields.io/github/stars/brandonskerritt/RustScan) +- https://img.shields.io/github/languages/top/brandonskerritt/RustScan) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/S3Scanner.yaml b/weapons/S3Scanner.yaml new file mode 100644 index 0000000..45d27f3 --- /dev/null +++ b/weapons/S3Scanner.yaml @@ -0,0 +1,15 @@ +--- +name: S3Scanner +description: 'Scan for open AWS S3 buckets and dump the contents ' +urls: +- https://github.com/sa7mon/S3Scanner) +- https://img.shields.io/github/stars/sa7mon/S3Scanner) +- https://img.shields.io/github/languages/top/sa7mon/S3Scanner) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/SQLNinja.yaml b/weapons/SQLNinja.yaml new file mode 100644 index 0000000..c061549 --- /dev/null +++ b/weapons/SQLNinja.yaml @@ -0,0 +1,11 @@ +--- +name: SQLNinja +description: " SQL Injection scanner|![](https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray) " +urls: +- https://gitlab.com/kalilinux/packages/sqlninja) +- https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/SQL_Ninja.yaml b/weapons/SQL_Ninja.yaml new file mode 100644 index 0000000..3f2a104 --- /dev/null +++ b/weapons/SQL_Ninja.yaml @@ -0,0 +1,11 @@ +--- +name: SQL Ninja +description: SQL Injection scanner +urls: +- https://gitlab.com/kalilinux/packages/sqlninja) +- https://img.shields.io/static/v1?label=&message=it's%20not%20github&color=gray) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/SSRFmap.yaml b/weapons/SSRFmap.yaml new file mode 100644 index 0000000..eff6c0c --- /dev/null +++ b/weapons/SSRFmap.yaml @@ -0,0 +1,15 @@ +--- +name: SSRFmap +description: 'Automatic SSRF fuzzer and exploitation tool ' +urls: +- https://github.com/swisskyrepo/SSRFmap) +- https://img.shields.io/github/stars/swisskyrepo/SSRFmap) +- https://img.shields.io/github/languages/top/swisskyrepo/SSRFmap) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/STEWS.yaml b/weapons/STEWS.yaml new file mode 100644 index 0000000..a51faaf --- /dev/null +++ b/weapons/STEWS.yaml @@ -0,0 +1,12 @@ +--- +name: STEWS +description: A Security Tool for Enumerating WebSockets +urls: +- https://github.com/PalindromeLabs/STEWS) +- https://img.shields.io/github/stars/PalindromeLabs/STEWS) +- https://img.shields.io/github/languages/top/PalindromeLabs/STEWS) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/SecLists.yaml b/weapons/SecLists.yaml new file mode 100644 index 0000000..95ed929 --- /dev/null +++ b/weapons/SecLists.yaml @@ -0,0 +1,18 @@ +--- +name: SecLists +description: 'SecLists is the security tester''s companion. It''s a collection of + multiple types of lists used during security assessments, collected in one place. + List types include usernames, passwords, URLs, sensitive data patterns, fuzzing + payloads, web shells, and many more. ' +urls: +- https://github.com/danielmiessler/SecLists) +- https://img.shields.io/github/stars/danielmiessler/SecLists) +- https://img.shields.io/github/languages/top/danielmiessler/SecLists) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/SecretFinder.yaml b/weapons/SecretFinder.yaml new file mode 100644 index 0000000..086397b --- /dev/null +++ b/weapons/SecretFinder.yaml @@ -0,0 +1,16 @@ +--- +name: SecretFinder +description: 'SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) + and search anything on javascript files ' +urls: +- https://github.com/m4ll0k/SecretFinder) +- https://img.shields.io/github/stars/m4ll0k/SecretFinder) +- https://img.shields.io/github/languages/top/m4ll0k/SecretFinder) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/SecurityTrails.yaml b/weapons/SecurityTrails.yaml new file mode 100644 index 0000000..6a817ed --- /dev/null +++ b/weapons/SecurityTrails.yaml @@ -0,0 +1,11 @@ +--- +name: SecurityTrails +description: " Online dns / subdomain / recon tool|![](https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray) " +urls: +- https://securitytrails.com +- https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/SequenceDiagram.yaml b/weapons/SequenceDiagram.yaml new file mode 100644 index 0000000..e2aca06 --- /dev/null +++ b/weapons/SequenceDiagram.yaml @@ -0,0 +1,11 @@ +--- +name: SequenceDiagram +description: " Online tool for creating UML sequence diagrams|![](https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray) " +urls: +- https://sequencediagram.org +- https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/Shodan.yaml b/weapons/Shodan.yaml new file mode 100644 index 0000000..bf3ba8c --- /dev/null +++ b/weapons/Shodan.yaml @@ -0,0 +1,11 @@ +--- +name: Shodan +description: " World's first search engine for Internet-connected devices|![](https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray) " +urls: +- https://www.shodan.io/) +- https://img.shields.io/static/v1?label=&message=it%27s%20not%20github&color=gray) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/Silver.yaml b/weapons/Silver.yaml new file mode 100644 index 0000000..606978e --- /dev/null +++ b/weapons/Silver.yaml @@ -0,0 +1,15 @@ +--- +name: Silver +description: 'Mass scan IPs for vulnerable services ' +urls: +- https://github.com/s0md3v/Silver) +- https://img.shields.io/github/stars/s0md3v/Silver) +- https://img.shields.io/github/languages/top/s0md3v/Silver) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/Sn1per.yaml b/weapons/Sn1per.yaml new file mode 100644 index 0000000..0c81288 --- /dev/null +++ b/weapons/Sn1per.yaml @@ -0,0 +1,15 @@ +--- +name: Sn1per +description: 'Automated pentest framework for offensive security experts ' +urls: +- https://github.com/1N3/Sn1per) +- https://img.shields.io/github/stars/1N3/Sn1per) +- https://img.shields.io/github/languages/top/1N3/Sn1per) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/Stepper.yaml b/weapons/Stepper.yaml new file mode 100644 index 0000000..f309a27 --- /dev/null +++ b/weapons/Stepper.yaml @@ -0,0 +1,13 @@ +--- +name: Stepper +description: +urls: +- https://github.com/CoreyD97/Stepper) +- https://img.shields.io/github/stars/CoreyD97/Stepper) +- https://img.shields.io/github/languages/top/CoreyD97/Stepper) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/Striker.yaml b/weapons/Striker.yaml new file mode 100644 index 0000000..b29b1ab --- /dev/null +++ b/weapons/Striker.yaml @@ -0,0 +1,15 @@ +--- +name: Striker +description: 'Striker is an offensive information and vulnerability scanner. ' +urls: +- https://github.com/s0md3v/Striker) +- https://img.shields.io/github/stars/s0md3v/Striker) +- https://img.shields.io/github/languages/top/s0md3v/Striker) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/SubOver.yaml b/weapons/SubOver.yaml new file mode 100644 index 0000000..314691c --- /dev/null +++ b/weapons/SubOver.yaml @@ -0,0 +1,12 @@ +--- +name: SubOver +description: A Powerful Subdomain Takeover Tool +urls: +- https://github.com/Ice3man543/SubOver) +- https://img.shields.io/github/stars/Ice3man543/SubOver) +- https://img.shields.io/github/languages/top/Ice3man543/SubOver) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/Sublist3r.yaml b/weapons/Sublist3r.yaml new file mode 100644 index 0000000..1014f7c --- /dev/null +++ b/weapons/Sublist3r.yaml @@ -0,0 +1,15 @@ +--- +name: Sublist3r +description: 'Fast subdomains enumeration tool for penetration testers ' +urls: +- https://github.com/aboul3la/Sublist3r) +- https://img.shields.io/github/stars/aboul3la/Sublist3r) +- https://img.shields.io/github/languages/top/aboul3la/Sublist3r) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/Taipan.yaml b/weapons/Taipan.yaml new file mode 100644 index 0000000..466f182 --- /dev/null +++ b/weapons/Taipan.yaml @@ -0,0 +1,12 @@ +--- +name: Taipan +description: Web application vulnerability scanner +urls: +- https://github.com/enkomio/Taipan) +- https://img.shields.io/github/stars/enkomio/Taipan) +- https://img.shields.io/github/languages/top/enkomio/Taipan) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/TukTuk.yaml b/weapons/TukTuk.yaml new file mode 100644 index 0000000..c60644b --- /dev/null +++ b/weapons/TukTuk.yaml @@ -0,0 +1,15 @@ +--- +name: TukTuk +description: 'Tool for catching and logging different types of requests. ' +urls: +- https://github.com/ArturSS7/TukTuk) +- https://img.shields.io/github/stars/ArturSS7/TukTuk) +- https://img.shields.io/github/languages/top/ArturSS7/TukTuk) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/User-Agent_Switcher.yaml b/weapons/User-Agent_Switcher.yaml new file mode 100644 index 0000000..530a391 --- /dev/null +++ b/weapons/User-Agent_Switcher.yaml @@ -0,0 +1,12 @@ +--- +name: User-Agent Switcher +description: quick and easy way to switch between user-agents. +urls: +- https://chrome.google.com/webstore/detail/user-agent-switcher/clddifkhlkcojbojppdojfeeikdkgiae) +- https://img.shields.io/static/v1?label=&message=it's%20not%20github&color=gray) +category: browser-addon +types: [] +platform: +- chrome +lang: [] +tags: [] diff --git a/weapons/VHostScan.yaml b/weapons/VHostScan.yaml new file mode 100644 index 0000000..3485580 --- /dev/null +++ b/weapons/VHostScan.yaml @@ -0,0 +1,17 @@ +--- +name: VHostScan +description: 'A virtual host scanner that performs reverse lookups, can be used with + pivot tools, detect catch-all scenarios, work around wildcards, aliases and dynamic + default pages. ' +urls: +- https://github.com/codingo/VHostScan) +- https://img.shields.io/github/stars/codingo/VHostScan) +- https://img.shields.io/github/languages/top/codingo/VHostScan) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/Wayback_Machine.yaml b/weapons/Wayback_Machine.yaml new file mode 100644 index 0000000..f73e9e9 --- /dev/null +++ b/weapons/Wayback_Machine.yaml @@ -0,0 +1,12 @@ +--- +name: Wayback Machine +description: History of website +urls: +- https://apps.apple.com/us/app/wayback-machine/id1472432422) +- https://img.shields.io/static/v1?label=&message=it's%20not%20github&color=gray) +category: browser-addon +types: [] +platform: +- safari +lang: [] +tags: [] diff --git a/weapons/Web-Cache-Vulnerability-Scanner.yaml b/weapons/Web-Cache-Vulnerability-Scanner.yaml new file mode 100644 index 0000000..af5431f --- /dev/null +++ b/weapons/Web-Cache-Vulnerability-Scanner.yaml @@ -0,0 +1,14 @@ +--- +name: Web-Cache-Vulnerability-Scanner +description: Web Cache Vulnerability Scanner is a Go-based CLI tool for testing for + web cache poisoning. It is developed by Hackmanit GmbH (http://hackmanit.de/). +urls: +- https://github.com/Hackmanit/Web-Cache-Vulnerability-Scanner) +- http://hackmanit.de/). +- https://img.shields.io/github/stars/Hackmanit/Web-Cache-Vulnerability-Scanner) +- https://img.shields.io/github/languages/top/Hackmanit/Web-Cache-Vulnerability-Scanner) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/XSRFProbe.yaml b/weapons/XSRFProbe.yaml new file mode 100644 index 0000000..8b98934 --- /dev/null +++ b/weapons/XSRFProbe.yaml @@ -0,0 +1,12 @@ +--- +name: XSRFProbe +description: The Prime Cross Site Request Forgery (CSRF) Audit and Exploitation Toolkit. +urls: +- https://github.com/0xInfection/XSRFProbe) +- https://img.shields.io/github/stars/0xInfection/XSRFProbe) +- https://img.shields.io/github/languages/top/0xInfection/XSRFProbe) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/XSStrike.yaml b/weapons/XSStrike.yaml new file mode 100644 index 0000000..3dac24e --- /dev/null +++ b/weapons/XSStrike.yaml @@ -0,0 +1,15 @@ +--- +name: XSStrike +description: 'Most advanced XSS scanner. ' +urls: +- https://github.com/s0md3v/XSStrike) +- https://img.shields.io/github/stars/s0md3v/XSStrike) +- https://img.shields.io/github/languages/top/s0md3v/XSStrike) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/XSpear.yaml b/weapons/XSpear.yaml new file mode 100644 index 0000000..04bc5ba --- /dev/null +++ b/weapons/XSpear.yaml @@ -0,0 +1,15 @@ +--- +name: XSpear +description: 'Powerfull XSS Scanning and Parameter analysis tool&gem ' +urls: +- https://github.com/hahwul/XSpear) +- https://img.shields.io/github/stars/hahwul/XSpear) +- https://img.shields.io/github/languages/top/hahwul/XSpear) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/XXEinjector.yaml b/weapons/XXEinjector.yaml new file mode 100644 index 0000000..d5e1928 --- /dev/null +++ b/weapons/XXEinjector.yaml @@ -0,0 +1,13 @@ +--- +name: XXEinjector +description: Tool for automatic exploitation of XXE vulnerability using direct and + different out of band methods. +urls: +- https://github.com/enjoiz/XXEinjector) +- https://img.shields.io/github/stars/enjoiz/XXEinjector) +- https://img.shields.io/github/languages/top/enjoiz/XXEinjector) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/a2sv.yaml b/weapons/a2sv.yaml new file mode 100644 index 0000000..9abb552 --- /dev/null +++ b/weapons/a2sv.yaml @@ -0,0 +1,15 @@ +--- +name: a2sv +description: 'Auto Scanning to SSL Vulnerability ' +urls: +- https://github.com/hahwul/a2sv) +- https://img.shields.io/github/stars/hahwul/a2sv) +- https://img.shields.io/github/languages/top/hahwul/a2sv) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/altdns.yaml b/weapons/altdns.yaml new file mode 100644 index 0000000..df1c1ad --- /dev/null +++ b/weapons/altdns.yaml @@ -0,0 +1,16 @@ +--- +name: altdns +description: 'Generates permutations, alterations and mutations of subdomains and + then resolves them ' +urls: +- https://github.com/infosec-au/altdns) +- https://img.shields.io/github/stars/infosec-au/altdns) +- https://img.shields.io/github/languages/top/infosec-au/altdns) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/anew.yaml b/weapons/anew.yaml new file mode 100644 index 0000000..a198799 --- /dev/null +++ b/weapons/anew.yaml @@ -0,0 +1,15 @@ +--- +name: anew +description: A tool for adding new lines to files, skipping duplicates +urls: +- https://github.com/tomnomnom/anew) +- https://img.shields.io/github/stars/tomnomnom/anew) +- https://img.shields.io/github/languages/top/tomnomnom/anew) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/apkleaks.yaml b/weapons/apkleaks.yaml new file mode 100644 index 0000000..0320d59 --- /dev/null +++ b/weapons/apkleaks.yaml @@ -0,0 +1,15 @@ +--- +name: apkleaks +description: 'Scanning APK file for URIs, endpoints & secrets. ' +urls: +- https://github.com/dwisiswant0/apkleaks) +- https://img.shields.io/github/stars/dwisiswant0/apkleaks) +- https://img.shields.io/github/languages/top/dwisiswant0/apkleaks) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/aquatone.yaml b/weapons/aquatone.yaml new file mode 100644 index 0000000..e6a5924 --- /dev/null +++ b/weapons/aquatone.yaml @@ -0,0 +1,15 @@ +--- +name: aquatone +description: 'A Tool for Domain Flyovers ' +urls: +- https://github.com/michenriksen/aquatone) +- https://img.shields.io/github/stars/michenriksen/aquatone) +- https://img.shields.io/github/languages/top/michenriksen/aquatone) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/arachni.yaml b/weapons/arachni.yaml new file mode 100644 index 0000000..94f0597 --- /dev/null +++ b/weapons/arachni.yaml @@ -0,0 +1,14 @@ +--- +name: arachni +description: 'Web Application Security Scanner Framework ' +urls: +- https://github.com/Arachni/arachni) +- https://img.shields.io/github/stars/Arachni/arachni) +- https://img.shields.io/github/languages/top/Arachni/arachni) +category: tool +types: [] +platform: +- linux +- macos +lang: [] +tags: [] diff --git a/weapons/assetfinder.yaml b/weapons/assetfinder.yaml new file mode 100644 index 0000000..11563dd --- /dev/null +++ b/weapons/assetfinder.yaml @@ -0,0 +1,15 @@ +--- +name: assetfinder +description: 'Find domains and subdomains related to a given domain ' +urls: +- https://github.com/tomnomnom/assetfinder) +- https://img.shields.io/github/stars/tomnomnom/assetfinder) +- https://img.shields.io/github/languages/top/tomnomnom/assetfinder) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/attack-surface-detector-zap.yaml b/weapons/attack-surface-detector-zap.yaml new file mode 100644 index 0000000..a4cd5fe --- /dev/null +++ b/weapons/attack-surface-detector-zap.yaml @@ -0,0 +1,13 @@ +--- +name: attack-surface-detector-zap +description: +urls: +- https://github.com/secdec/attack-surface-detector-zap) +- https://img.shields.io/github/stars/secdec/attack-surface-detector-zap) +- https://img.shields.io/github/languages/top/secdec/attack-surface-detector-zap) +category: tool-addon +types: [] +platform: +- zap +lang: [] +tags: [] diff --git a/weapons/auto-repeater.yaml b/weapons/auto-repeater.yaml new file mode 100644 index 0000000..0184349 --- /dev/null +++ b/weapons/auto-repeater.yaml @@ -0,0 +1,13 @@ +--- +name: auto-repeater +description: +urls: +- https://github.com/PortSwigger/auto-repeater) +- https://img.shields.io/github/stars/PortSwigger/auto-repeater) +- https://img.shields.io/github/languages/top/PortSwigger/auto-repeater) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/autochrome.yaml b/weapons/autochrome.yaml new file mode 100644 index 0000000..9dd3286 --- /dev/null +++ b/weapons/autochrome.yaml @@ -0,0 +1,12 @@ +--- +name: autochrome +description: This tool downloads, installs, and configures a shiny new copy of Chromium. +urls: +- https://github.com/nccgroup/autochrome) +- https://img.shields.io/github/stars/nccgroup/autochrome) +- https://img.shields.io/github/languages/top/nccgroup/autochrome) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/axiom.yaml b/weapons/axiom.yaml new file mode 100644 index 0000000..4674c77 --- /dev/null +++ b/weapons/axiom.yaml @@ -0,0 +1,14 @@ +--- +name: axiom +description: 'A dynamic infrastructure toolkit for red teamers and bug bounty hunters! ' +urls: +- https://github.com/pry0cc/axiom) +- https://img.shields.io/github/stars/pry0cc/axiom) +- https://img.shields.io/github/languages/top/pry0cc/axiom) +category: tool +types: [] +platform: +- linux +- macos +lang: [] +tags: [] diff --git a/weapons/bat.yaml b/weapons/bat.yaml new file mode 100644 index 0000000..63a2aa9 --- /dev/null +++ b/weapons/bat.yaml @@ -0,0 +1,12 @@ +--- +name: bat +description: A cat(1) clone with wings. +urls: +- https://github.com/sharkdp/bat) +- https://img.shields.io/github/stars/sharkdp/bat) +- https://img.shields.io/github/languages/top/sharkdp/bat) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/boast.yaml b/weapons/boast.yaml new file mode 100644 index 0000000..88050c6 --- /dev/null +++ b/weapons/boast.yaml @@ -0,0 +1,12 @@ +--- +name: boast +description: The BOAST Outpost for AppSec Testing (v0.1.0) +urls: +- https://github.com/marcoagner/boast) +- https://img.shields.io/github/stars/marcoagner/boast) +- https://img.shields.io/github/languages/top/marcoagner/boast) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/bountyplz.yaml b/weapons/bountyplz.yaml new file mode 100644 index 0000000..33d10d2 --- /dev/null +++ b/weapons/bountyplz.yaml @@ -0,0 +1,14 @@ +--- +name: bountyplz +description: 'Automated security reporting from markdown templates (HackerOne and + Bugcrowd are currently the platforms supported) ' +urls: +- https://github.com/fransr/bountyplz) +- https://img.shields.io/github/stars/fransr/bountyplz) +- https://img.shields.io/github/languages/top/fransr/bountyplz) +category: tool +types: [] +platform: +- macos +lang: [] +tags: [] diff --git a/weapons/burl.yaml b/weapons/burl.yaml new file mode 100644 index 0000000..c22b133 --- /dev/null +++ b/weapons/burl.yaml @@ -0,0 +1,15 @@ +--- +name: burl +description: 'A Broken-URL Checker ' +urls: +- https://github.com/tomnomnom/burl) +- https://img.shields.io/github/stars/tomnomnom/burl) +- https://img.shields.io/github/languages/top/tomnomnom/burl) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/burp-exporter.yaml b/weapons/burp-exporter.yaml new file mode 100644 index 0000000..f68c5a2 --- /dev/null +++ b/weapons/burp-exporter.yaml @@ -0,0 +1,13 @@ +--- +name: burp-exporter +description: +urls: +- https://github.com/artssec/burp-exporter) +- https://img.shields.io/github/stars/artssec/burp-exporter) +- https://img.shields.io/github/languages/top/artssec/burp-exporter) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/burp-piper.yaml b/weapons/burp-piper.yaml new file mode 100644 index 0000000..f708066 --- /dev/null +++ b/weapons/burp-piper.yaml @@ -0,0 +1,13 @@ +--- +name: burp-piper +description: +urls: +- https://github.com/silentsignal/burp-piper) +- https://img.shields.io/github/stars/silentsignal/burp-piper) +- https://img.shields.io/github/languages/top/silentsignal/burp-piper) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/burp-retire-js.yaml b/weapons/burp-retire-js.yaml new file mode 100644 index 0000000..aca1928 --- /dev/null +++ b/weapons/burp-retire-js.yaml @@ -0,0 +1,14 @@ +--- +name: burp-retire-js +description: +urls: +- https://github.com/h3xstream/burp-retire-js) +- https://img.shields.io/github/stars/h3xstream/burp-retire-js) +- https://img.shields.io/github/languages/top/h3xstream/burp-retire-js) +category: tool-addon +types: [] +platform: +- burpsuite +- zap +lang: [] +tags: [] diff --git a/weapons/burp-send-to.yaml b/weapons/burp-send-to.yaml new file mode 100644 index 0000000..344396a --- /dev/null +++ b/weapons/burp-send-to.yaml @@ -0,0 +1,13 @@ +--- +name: burp-send-to +description: +urls: +- https://github.com/bytebutcher/burp-send-to) +- https://img.shields.io/github/stars/bytebutcher/burp-send-to) +- https://img.shields.io/github/languages/top/bytebutcher/burp-send-to) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/c-jwt-cracker.yaml b/weapons/c-jwt-cracker.yaml new file mode 100644 index 0000000..e18676c --- /dev/null +++ b/weapons/c-jwt-cracker.yaml @@ -0,0 +1,15 @@ +--- +name: c-jwt-cracker +description: 'JWT brute force cracker written in C ' +urls: +- https://github.com/brendan-rius/c-jwt-cracker) +- https://img.shields.io/github/stars/brendan-rius/c-jwt-cracker) +- https://img.shields.io/github/languages/top/brendan-rius/c-jwt-cracker) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/can-i-take-over-xyz.yaml b/weapons/can-i-take-over-xyz.yaml new file mode 100644 index 0000000..1b742f9 --- /dev/null +++ b/weapons/can-i-take-over-xyz.yaml @@ -0,0 +1,13 @@ +--- +name: can-i-take-over-xyz +description: '"Can I take over XYZ?" — a list of services and how to claim (sub)domains + with dangling DNS records.' +urls: +- https://github.com/EdOverflow/can-i-take-over-xyz) +- https://img.shields.io/github/stars/EdOverflow/can-i-take-over-xyz) +- https://img.shields.io/github/languages/top/EdOverflow/can-i-take-over-xyz) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/cariddi.yaml b/weapons/cariddi.yaml new file mode 100644 index 0000000..402cae9 --- /dev/null +++ b/weapons/cariddi.yaml @@ -0,0 +1,13 @@ +--- +name: cariddi +description: Take a list of domains and scan for endpoints, secrets, api keys, file + extensions, tokens and more... +urls: +- https://github.com/edoardottt/cariddi) +- https://img.shields.io/github/stars/edoardottt/cariddi) +- https://img.shields.io/github/languages/top/edoardottt/cariddi) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/cc.py.yaml b/weapons/cc.py.yaml new file mode 100644 index 0000000..4c25d86 --- /dev/null +++ b/weapons/cc.py.yaml @@ -0,0 +1,15 @@ +--- +name: cc.py +description: 'Extracting URLs of a specific target based on the results of "commoncrawl.org" ' +urls: +- https://github.com/si9int/cc.py) +- https://img.shields.io/github/stars/si9int/cc.py) +- https://img.shields.io/github/languages/top/si9int/cc.py) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/cf-check.yaml b/weapons/cf-check.yaml new file mode 100644 index 0000000..e423d6c --- /dev/null +++ b/weapons/cf-check.yaml @@ -0,0 +1,15 @@ +--- +name: cf-check +description: 'Cloudflare Checker written in Go ' +urls: +- https://github.com/dwisiswant0/cf-check) +- https://img.shields.io/github/stars/dwisiswant0/cf-check) +- https://img.shields.io/github/languages/top/dwisiswant0/cf-check) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/chaos-client.yaml b/weapons/chaos-client.yaml new file mode 100644 index 0000000..9c4ac40 --- /dev/null +++ b/weapons/chaos-client.yaml @@ -0,0 +1,15 @@ +--- +name: chaos-client +description: 'Go client to communicate with Chaos DNS API. ' +urls: +- https://github.com/projectdiscovery/chaos-client) +- https://img.shields.io/github/stars/projectdiscovery/chaos-client) +- https://img.shields.io/github/languages/top/projectdiscovery/chaos-client) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/clear-cache.yaml b/weapons/clear-cache.yaml new file mode 100644 index 0000000..7794f57 --- /dev/null +++ b/weapons/clear-cache.yaml @@ -0,0 +1,13 @@ +--- +name: clear-cache +description: Add-on to clear browser cache with a single click or via the F9 key. +urls: +- https://github.com/TenSoja/clear-cache) +- https://img.shields.io/github/stars/TenSoja/clear-cache) +- https://img.shields.io/github/languages/top/TenSoja/clear-cache) +category: browser-addon +types: [] +platform: +- firefox +lang: [] +tags: [] diff --git a/weapons/collaborator-everywhere.yaml b/weapons/collaborator-everywhere.yaml new file mode 100644 index 0000000..b786081 --- /dev/null +++ b/weapons/collaborator-everywhere.yaml @@ -0,0 +1,13 @@ +--- +name: collaborator-everywhere +description: +urls: +- https://github.com/PortSwigger/collaborator-everywhere) +- https://img.shields.io/github/stars/PortSwigger/collaborator-everywhere) +- https://img.shields.io/github/languages/top/PortSwigger/collaborator-everywhere) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/commix.yaml b/weapons/commix.yaml new file mode 100644 index 0000000..43f3031 --- /dev/null +++ b/weapons/commix.yaml @@ -0,0 +1,12 @@ +--- +name: commix +description: Automated All-in-One OS Command Injection Exploitation Tool. +urls: +- https://github.com/commixproject/commix) +- https://img.shields.io/github/stars/commixproject/commix) +- https://img.shields.io/github/languages/top/commixproject/commix) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/community-scripts.yaml b/weapons/community-scripts.yaml new file mode 100644 index 0000000..45efea1 --- /dev/null +++ b/weapons/community-scripts.yaml @@ -0,0 +1,13 @@ +--- +name: community-scripts +description: +urls: +- https://github.com/zaproxy/community-scripts) +- https://img.shields.io/github/stars/zaproxy/community-scripts) +- https://img.shields.io/github/languages/top/zaproxy/community-scripts) +category: tool-addon +types: [] +platform: +- zap +lang: [] +tags: [] diff --git a/weapons/confused.yaml b/weapons/confused.yaml new file mode 100644 index 0000000..dbb4855 --- /dev/null +++ b/weapons/confused.yaml @@ -0,0 +1,13 @@ +--- +name: confused +description: Tool to check for dependency confusion vulnerabilities in multiple package + management systems +urls: +- https://github.com/visma-prodsec/confused) +- https://img.shields.io/github/stars/visma-prodsec/confused) +- https://img.shields.io/github/languages/top/visma-prodsec/confused) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/cookie-quick-manager.yaml b/weapons/cookie-quick-manager.yaml new file mode 100644 index 0000000..26bab7f --- /dev/null +++ b/weapons/cookie-quick-manager.yaml @@ -0,0 +1,14 @@ +--- +name: cookie-quick-manager +description: An addon to manage (view, search, create, edit, remove, backup, restore) + cookies on Firefox. +urls: +- https://github.com/ysard/cookie-quick-manager) +- https://img.shields.io/github/stars/ysard/cookie-quick-manager) +- https://img.shields.io/github/languages/top/ysard/cookie-quick-manager) +category: browser-addon +types: [] +platform: +- firefox +lang: [] +tags: [] diff --git a/weapons/corsair_scan.yaml b/weapons/corsair_scan.yaml new file mode 100644 index 0000000..25f6c43 --- /dev/null +++ b/weapons/corsair_scan.yaml @@ -0,0 +1,13 @@ +--- +name: corsair_scan +description: Corsair_scan is a security tool to test Cross-Origin Resource Sharing + (CORS). +urls: +- https://github.com/Santandersecurityresearch/corsair_scan) +- https://img.shields.io/github/stars/Santandersecurityresearch/corsair_scan) +- https://img.shields.io/github/languages/top/Santandersecurityresearch/corsair_scan) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/crawlergo.yaml b/weapons/crawlergo.yaml new file mode 100644 index 0000000..b741110 --- /dev/null +++ b/weapons/crawlergo.yaml @@ -0,0 +1,12 @@ +--- +name: crawlergo +description: A powerful browser crawler for web vulnerability scanners +urls: +- https://github.com/Qianlitp/crawlergo) +- https://img.shields.io/github/stars/Qianlitp/crawlergo) +- https://img.shields.io/github/languages/top/Qianlitp/crawlergo) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/crlfuzz.yaml b/weapons/crlfuzz.yaml new file mode 100644 index 0000000..a6a2b22 --- /dev/null +++ b/weapons/crlfuzz.yaml @@ -0,0 +1,15 @@ +--- +name: crlfuzz +description: 'A fast tool to scan CRLF vulnerability written in Go ' +urls: +- https://github.com/dwisiswant0/crlfuzz) +- https://img.shields.io/github/stars/dwisiswant0/crlfuzz) +- https://img.shields.io/github/languages/top/dwisiswant0/crlfuzz) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/csp-auditor.yaml b/weapons/csp-auditor.yaml new file mode 100644 index 0000000..adfaafa --- /dev/null +++ b/weapons/csp-auditor.yaml @@ -0,0 +1,14 @@ +--- +name: csp-auditor +description: +urls: +- https://github.com/GoSecure/csp-auditor) +- https://img.shields.io/github/stars/GoSecure/csp-auditor) +- https://img.shields.io/github/languages/top/GoSecure/csp-auditor) +category: tool-addon +types: [] +platform: +- burpsuite +- zap +lang: [] +tags: [] diff --git a/weapons/curl.yaml b/weapons/curl.yaml new file mode 100644 index 0000000..4eee758 --- /dev/null +++ b/weapons/curl.yaml @@ -0,0 +1,15 @@ +--- +name: curl +description: A command line tool and library for transferring data with URL syntax, + supporting HTTP, HTTPS, FTP, FTPS, GOPHER, TFTP, SCP, SFTP, SMB, TELNET, DICT, LDAP, + LDAPS, MQTT, FILE, IMAP, SMTP, POP3, RTSP and RTMP. libcurl offers a myriad of powerful + features +urls: +- https://github.com/curl/curl) +- https://img.shields.io/github/stars/curl/curl) +- https://img.shields.io/github/languages/top/curl/curl) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/dalfox.yaml b/weapons/dalfox.yaml new file mode 100644 index 0000000..53614c8 --- /dev/null +++ b/weapons/dalfox.yaml @@ -0,0 +1,16 @@ +--- +name: dalfox +description: "\U0001F318\U0001F98A DalFox(Finder Of XSS) / Parameter Analysis and + XSS Scanning tool based on golang " +urls: +- https://github.com/hahwul/dalfox) +- https://img.shields.io/github/stars/hahwul/dalfox) +- https://img.shields.io/github/languages/top/hahwul/dalfox) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/dirsearch.yaml b/weapons/dirsearch.yaml new file mode 100644 index 0000000..71a9a68 --- /dev/null +++ b/weapons/dirsearch.yaml @@ -0,0 +1,15 @@ +--- +name: dirsearch +description: 'Web path scanner ' +urls: +- https://github.com/maurosoria/dirsearch) +- https://img.shields.io/github/stars/maurosoria/dirsearch) +- https://img.shields.io/github/languages/top/maurosoria/dirsearch) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/ditto.yaml b/weapons/ditto.yaml new file mode 100644 index 0000000..162ecd0 --- /dev/null +++ b/weapons/ditto.yaml @@ -0,0 +1,12 @@ +--- +name: ditto +description: A tool for IDN homograph attacks and detection. +urls: +- https://github.com/evilsocket/ditto) +- https://img.shields.io/github/stars/evilsocket/ditto) +- https://img.shields.io/github/languages/top/evilsocket/ditto) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/dmut.yaml b/weapons/dmut.yaml new file mode 100644 index 0000000..273781a --- /dev/null +++ b/weapons/dmut.yaml @@ -0,0 +1,13 @@ +--- +name: dmut +description: A tool to perform permutations, mutations and alteration of subdomains + in golang. +urls: +- https://github.com/bp0lr/dmut) +- https://img.shields.io/github/stars/bp0lr/dmut) +- https://img.shields.io/github/languages/top/bp0lr/dmut) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/dnsobserver.yaml b/weapons/dnsobserver.yaml new file mode 100644 index 0000000..e733027 --- /dev/null +++ b/weapons/dnsobserver.yaml @@ -0,0 +1,14 @@ +--- +name: dnsobserver +description: 'A handy DNS service written in Go to aid in the detection of several + types of blind vulnerabilities. It monitors a pentester''s server for out-of-band + DNS interactions and sends lookup notifications via Slack. ' +urls: +- https://github.com/allyomalley/dnsobserver) +- https://img.shields.io/github/stars/allyomalley/dnsobserver) +- https://img.shields.io/github/languages/top/allyomalley/dnsobserver) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/dnsprobe.yaml b/weapons/dnsprobe.yaml new file mode 100644 index 0000000..ae6bd05 --- /dev/null +++ b/weapons/dnsprobe.yaml @@ -0,0 +1,16 @@ +--- +name: dnsprobe +description: 'DNSProb (beta) is a tool built on top of retryabledns that allows you + to perform multiple dns queries of your choice with a list of user supplied resolvers. ' +urls: +- https://github.com/projectdiscovery/dnsprobe) +- https://img.shields.io/github/stars/projectdiscovery/dnsprobe) +- https://img.shields.io/github/languages/top/projectdiscovery/dnsprobe) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/dnsvalidator.yaml b/weapons/dnsvalidator.yaml new file mode 100644 index 0000000..df489b8 --- /dev/null +++ b/weapons/dnsvalidator.yaml @@ -0,0 +1,13 @@ +--- +name: dnsvalidator +description: Maintains a list of IPv4 DNS servers by verifying them against baseline + servers, and ensuring accurate responses. +urls: +- https://github.com/vortexau/dnsvalidator) +- https://img.shields.io/github/stars/vortexau/dnsvalidator) +- https://img.shields.io/github/languages/top/vortexau/dnsvalidator) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/dnsx.yaml b/weapons/dnsx.yaml new file mode 100644 index 0000000..5011348 --- /dev/null +++ b/weapons/dnsx.yaml @@ -0,0 +1,13 @@ +--- +name: dnsx +description: dnsx is a fast and multi-purpose DNS toolkit allow to run multiple DNS + queries of your choice with a list of user-supplied resolvers. +urls: +- https://github.com/projectdiscovery/dnsx) +- https://img.shields.io/github/stars/projectdiscovery/dnsx) +- https://img.shields.io/github/languages/top/projectdiscovery/dnsx) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/docem.yaml b/weapons/docem.yaml new file mode 100644 index 0000000..19eba25 --- /dev/null +++ b/weapons/docem.yaml @@ -0,0 +1,13 @@ +--- +name: docem +description: Uility to embed XXE and XSS payloads in docx,odt,pptx,etc (OXML_XEE on + steroids) +urls: +- https://github.com/whitel1st/docem) +- https://img.shields.io/github/stars/whitel1st/docem) +- https://img.shields.io/github/languages/top/whitel1st/docem) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/domdig.yaml b/weapons/domdig.yaml new file mode 100644 index 0000000..01b47cc --- /dev/null +++ b/weapons/domdig.yaml @@ -0,0 +1,15 @@ +--- +name: domdig +description: 'DOM XSS scanner for Single Page Applications ' +urls: +- https://github.com/fcavallarin/domdig) +- https://img.shields.io/github/stars/fcavallarin/domdig) +- https://img.shields.io/github/languages/top/fcavallarin/domdig) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/dontgo403.yaml b/weapons/dontgo403.yaml new file mode 100644 index 0000000..b308746 --- /dev/null +++ b/weapons/dontgo403.yaml @@ -0,0 +1,12 @@ +--- +name: dontgo403 +description: Tool to bypass 40X response codes. +urls: +- https://github.com/devploit/dontgo403) +- https://img.shields.io/github/stars/devploit/dontgo403) +- https://img.shields.io/github/languages/top/devploit/dontgo403) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/dotdotpwn.yaml b/weapons/dotdotpwn.yaml new file mode 100644 index 0000000..8a79181 --- /dev/null +++ b/weapons/dotdotpwn.yaml @@ -0,0 +1,15 @@ +--- +name: dotdotpwn +description: 'DotDotPwn - The Directory Traversal Fuzzer ' +urls: +- https://github.com/wireghoul/dotdotpwn) +- https://img.shields.io/github/stars/wireghoul/dotdotpwn) +- https://img.shields.io/github/languages/top/wireghoul/dotdotpwn) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/eval_villain.yaml b/weapons/eval_villain.yaml new file mode 100644 index 0000000..e7976a5 --- /dev/null +++ b/weapons/eval_villain.yaml @@ -0,0 +1,13 @@ +--- +name: eval_villain +description: A Firefox Web Extension to improve the discovery of DOM XSS. +urls: +- https://github.com/swoops/eval_villain) +- https://img.shields.io/github/stars/swoops/eval_villain) +- https://img.shields.io/github/languages/top/swoops/eval_villain) +category: browser-addon +types: [] +platform: +- firefox +lang: [] +tags: [] diff --git a/weapons/ezXSS.yaml b/weapons/ezXSS.yaml new file mode 100644 index 0000000..e8daaae --- /dev/null +++ b/weapons/ezXSS.yaml @@ -0,0 +1,16 @@ +--- +name: ezXSS +description: 'ezXSS is an easy way for penetration testers and bug bounty hunters + to test (blind) Cross Site Scripting. ' +urls: +- https://github.com/ssl/ezXSS) +- https://img.shields.io/github/stars/ssl/ezXSS) +- https://img.shields.io/github/languages/top/ssl/ezXSS) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/femida.yaml b/weapons/femida.yaml new file mode 100644 index 0000000..18cceeb --- /dev/null +++ b/weapons/femida.yaml @@ -0,0 +1,13 @@ +--- +name: femida +description: +urls: +- https://github.com/wish-i-was/femida) +- https://img.shields.io/github/stars/wish-i-was/femida) +- https://img.shields.io/github/languages/top/wish-i-was/femida) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/feroxbuster.yaml b/weapons/feroxbuster.yaml new file mode 100644 index 0000000..05d6ffa --- /dev/null +++ b/weapons/feroxbuster.yaml @@ -0,0 +1,12 @@ +--- +name: feroxbuster +description: A fast, simple, recursive content discovery tool written in Rust. +urls: +- https://github.com/epi052/feroxbuster) +- https://img.shields.io/github/stars/epi052/feroxbuster) +- https://img.shields.io/github/languages/top/epi052/feroxbuster) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/ffuf.yaml b/weapons/ffuf.yaml new file mode 100644 index 0000000..b906005 --- /dev/null +++ b/weapons/ffuf.yaml @@ -0,0 +1,15 @@ +--- +name: ffuf +description: 'Fast web fuzzer written in Go ' +urls: +- https://github.com/ffuf/ffuf) +- https://img.shields.io/github/stars/ffuf/ffuf) +- https://img.shields.io/github/languages/top/ffuf/ffuf) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/fhc.yaml b/weapons/fhc.yaml new file mode 100644 index 0000000..298915c --- /dev/null +++ b/weapons/fhc.yaml @@ -0,0 +1,12 @@ +--- +name: fhc +description: Fast HTTP Checker. +urls: +- https://github.com/Edu4rdSHL/fhc) +- https://img.shields.io/github/stars/Edu4rdSHL/fhc) +- https://img.shields.io/github/languages/top/Edu4rdSHL/fhc) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/findom-xss.yaml b/weapons/findom-xss.yaml new file mode 100644 index 0000000..50d5854 --- /dev/null +++ b/weapons/findom-xss.yaml @@ -0,0 +1,15 @@ +--- +name: findom-xss +description: 'A fast DOM based XSS vulnerability scanner with simplicity. ' +urls: +- https://github.com/dwisiswant0/findom-xss) +- https://img.shields.io/github/stars/dwisiswant0/findom-xss) +- https://img.shields.io/github/languages/top/dwisiswant0/findom-xss) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/findomain.yaml b/weapons/findomain.yaml new file mode 100644 index 0000000..b42df81 --- /dev/null +++ b/weapons/findomain.yaml @@ -0,0 +1,16 @@ +--- +name: findomain +description: 'The fastest and cross-platform subdomain enumerator, do not waste your + time. ' +urls: +- https://github.com/Edu4rdSHL/findomain) +- https://img.shields.io/github/stars/Edu4rdSHL/findomain) +- https://img.shields.io/github/languages/top/Edu4rdSHL/findomain) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/fockcache.yaml b/weapons/fockcache.yaml new file mode 100644 index 0000000..2e70a5c --- /dev/null +++ b/weapons/fockcache.yaml @@ -0,0 +1,12 @@ +--- +name: fockcache +description: FockCache - Minimalized Test Cache Poisoning +urls: +- https://github.com/tismayil/fockcache) +- https://img.shields.io/github/stars/tismayil/fockcache) +- https://img.shields.io/github/languages/top/tismayil/fockcache) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/fuzzparam.yaml b/weapons/fuzzparam.yaml new file mode 100644 index 0000000..d50bf2c --- /dev/null +++ b/weapons/fuzzparam.yaml @@ -0,0 +1,12 @@ +--- +name: fuzzparam +description: A fast go based param miner to fuzz possible parameters a URL can have. +urls: +- https://github.com/0xsapra/fuzzparam) +- https://img.shields.io/github/stars/0xsapra/fuzzparam) +- https://img.shields.io/github/languages/top/0xsapra/fuzzparam) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/fzf.yaml b/weapons/fzf.yaml new file mode 100644 index 0000000..de9de4f --- /dev/null +++ b/weapons/fzf.yaml @@ -0,0 +1,15 @@ +--- +name: fzf +description: A command-line fuzzy finder +urls: +- https://github.com/junegunn/fzf) +- https://img.shields.io/github/stars/junegunn/fzf) +- https://img.shields.io/github/languages/top/junegunn/fzf) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/gau.yaml b/weapons/gau.yaml new file mode 100644 index 0000000..9f1b784 --- /dev/null +++ b/weapons/gau.yaml @@ -0,0 +1,16 @@ +--- +name: gau +description: Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback + Machine, and Common Crawl. +urls: +- https://github.com/lc/gau) +- https://img.shields.io/github/stars/lc/gau) +- https://img.shields.io/github/languages/top/lc/gau) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/gauplus.yaml b/weapons/gauplus.yaml new file mode 100644 index 0000000..5cabbde --- /dev/null +++ b/weapons/gauplus.yaml @@ -0,0 +1,13 @@ +--- +name: gauplus +description: A modified version of gau for personal usage. Support workers, proxies + and some extra things. +urls: +- https://github.com/bp0lr/gauplus) +- https://img.shields.io/github/stars/bp0lr/gauplus) +- https://img.shields.io/github/languages/top/bp0lr/gauplus) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/gee.yaml b/weapons/gee.yaml new file mode 100644 index 0000000..640a49e --- /dev/null +++ b/weapons/gee.yaml @@ -0,0 +1,14 @@ +--- +name: gee +description: "\U0001F3F5 Gee is tool of stdin to each files and stdout. It is similar + to the tee command, but there are more functions for convenience. In addition, it + was written as go" +urls: +- https://github.com/hahwul/gee) +- https://img.shields.io/github/stars/hahwul/gee) +- https://img.shields.io/github/languages/top/hahwul/gee) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/getJS.yaml b/weapons/getJS.yaml new file mode 100644 index 0000000..955b18f --- /dev/null +++ b/weapons/getJS.yaml @@ -0,0 +1,12 @@ +--- +name: getJS +description: A tool to fastly get all javascript sources/files +urls: +- https://github.com/003random/getJS) +- https://img.shields.io/github/stars/003random/getJS) +- https://img.shields.io/github/languages/top/003random/getJS) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/gf.yaml b/weapons/gf.yaml new file mode 100644 index 0000000..0d1712d --- /dev/null +++ b/weapons/gf.yaml @@ -0,0 +1,15 @@ +--- +name: gf +description: 'A wrapper around grep, to help you grep for things ' +urls: +- https://github.com/tomnomnom/gf) +- https://img.shields.io/github/stars/tomnomnom/gf) +- https://img.shields.io/github/languages/top/tomnomnom/gf) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/gitGraber.yaml b/weapons/gitGraber.yaml new file mode 100644 index 0000000..b07c02a --- /dev/null +++ b/weapons/gitGraber.yaml @@ -0,0 +1,15 @@ +--- +name: gitGraber +description: 'gitGraber ' +urls: +- https://github.com/hisxo/gitGraber) +- https://img.shields.io/github/stars/hisxo/gitGraber) +- https://img.shields.io/github/languages/top/hisxo/gitGraber) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/github-endpoints.yaml b/weapons/github-endpoints.yaml new file mode 100644 index 0000000..7f71d7d --- /dev/null +++ b/weapons/github-endpoints.yaml @@ -0,0 +1,12 @@ +--- +name: github-endpoints +description: Find endpoints on GitHub. +urls: +- https://github.com/gwen001/github-endpoints) +- https://img.shields.io/github/stars/gwen001/github-endpoints) +- https://img.shields.io/github/languages/top/gwen001/github-endpoints) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/github-regexp.yaml b/weapons/github-regexp.yaml new file mode 100644 index 0000000..9bf90a3 --- /dev/null +++ b/weapons/github-regexp.yaml @@ -0,0 +1,12 @@ +--- +name: github-regexp +description: Basically a regexp over a GitHub search. +urls: +- https://github.com/gwen001/github-regexp) +- https://img.shields.io/github/stars/gwen001/github-regexp) +- https://img.shields.io/github/languages/top/gwen001/github-regexp) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/github-search.yaml b/weapons/github-search.yaml new file mode 100644 index 0000000..e7571ca --- /dev/null +++ b/weapons/github-search.yaml @@ -0,0 +1,15 @@ +--- +name: github-search +description: 'Tools to perform basic search on GitHub. ' +urls: +- https://github.com/gwen001/github-search) +- https://img.shields.io/github/stars/gwen001/github-search) +- https://img.shields.io/github/languages/top/gwen001/github-search) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/github-subdomains.yaml b/weapons/github-subdomains.yaml new file mode 100644 index 0000000..522fef8 --- /dev/null +++ b/weapons/github-subdomains.yaml @@ -0,0 +1,12 @@ +--- +name: github-subdomains +description: Find subdomains on GitHub +urls: +- https://github.com/gwen001/github-subdomains) +- https://img.shields.io/github/stars/gwen001/github-subdomains) +- https://img.shields.io/github/languages/top/gwen001/github-subdomains) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/gitleaks.yaml b/weapons/gitleaks.yaml new file mode 100644 index 0000000..c84c827 --- /dev/null +++ b/weapons/gitleaks.yaml @@ -0,0 +1,12 @@ +--- +name: gitleaks +description: "Scan git repos (or files) for secrets using regex and entropy \U0001F511" +urls: +- https://github.com/zricethezav/gitleaks) +- https://img.shields.io/github/stars/zricethezav/gitleaks) +- https://img.shields.io/github/languages/top/zricethezav/gitleaks) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/gitls.yaml b/weapons/gitls.yaml new file mode 100644 index 0000000..18b7bfe --- /dev/null +++ b/weapons/gitls.yaml @@ -0,0 +1,12 @@ +--- +name: gitls +description: Listing git repository from URL/User/Org +urls: +- https://github.com/hahwul/gitls) +- https://img.shields.io/github/stars/hahwul/gitls) +- https://img.shields.io/github/languages/top/hahwul/gitls) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/gitrob.yaml b/weapons/gitrob.yaml new file mode 100644 index 0000000..2559a88 --- /dev/null +++ b/weapons/gitrob.yaml @@ -0,0 +1,15 @@ +--- +name: gitrob +description: 'Reconnaissance tool for GitHub organizations ' +urls: +- https://github.com/michenriksen/gitrob) +- https://img.shields.io/github/stars/michenriksen/gitrob) +- https://img.shields.io/github/languages/top/michenriksen/gitrob) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/go-dork.yaml b/weapons/go-dork.yaml new file mode 100644 index 0000000..8328da0 --- /dev/null +++ b/weapons/go-dork.yaml @@ -0,0 +1,15 @@ +--- +name: go-dork +description: 'The fastest dork scanner written in Go. ' +urls: +- https://github.com/dwisiswant0/go-dork) +- https://img.shields.io/github/stars/dwisiswant0/go-dork) +- https://img.shields.io/github/languages/top/dwisiswant0/go-dork) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/gobuster.yaml b/weapons/gobuster.yaml new file mode 100644 index 0000000..79f2d8c --- /dev/null +++ b/weapons/gobuster.yaml @@ -0,0 +1,15 @@ +--- +name: gobuster +description: 'Directory/File, DNS and VHost busting tool written in Go ' +urls: +- https://github.com/OJ/gobuster) +- https://img.shields.io/github/stars/OJ/gobuster) +- https://img.shields.io/github/languages/top/OJ/gobuster) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/gospider.yaml b/weapons/gospider.yaml new file mode 100644 index 0000000..c324c3e --- /dev/null +++ b/weapons/gospider.yaml @@ -0,0 +1,15 @@ +--- +name: gospider +description: 'Gospider - Fast web spider written in Go ' +urls: +- https://github.com/jaeles-project/gospider) +- https://img.shields.io/github/stars/jaeles-project/gospider) +- https://img.shields.io/github/languages/top/jaeles-project/gospider) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/gotator.yaml b/weapons/gotator.yaml new file mode 100644 index 0000000..069511f --- /dev/null +++ b/weapons/gotator.yaml @@ -0,0 +1,12 @@ +--- +name: gotator +description: Gotator is a tool to generate DNS wordlists through permutations. +urls: +- https://github.com/Josue87/gotator) +- https://img.shields.io/github/stars/Josue87/gotator) +- https://img.shields.io/github/languages/top/Josue87/gotator) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/gotestwaf.yaml b/weapons/gotestwaf.yaml new file mode 100644 index 0000000..0ce8d2d --- /dev/null +++ b/weapons/gotestwaf.yaml @@ -0,0 +1,13 @@ +--- +name: gotestwaf +description: An open-source project in Golang to test different web application firewalls + (WAF) for detection logic and bypasses +urls: +- https://github.com/wallarm/gotestwaf) +- https://img.shields.io/github/stars/wallarm/gotestwaf) +- https://img.shields.io/github/languages/top/wallarm/gotestwaf) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/gowitness.yaml b/weapons/gowitness.yaml new file mode 100644 index 0000000..61fa78a --- /dev/null +++ b/weapons/gowitness.yaml @@ -0,0 +1,16 @@ +--- +name: gowitness +description: "\U0001F50D gowitness - a golang, web screenshot utility using Chrome + Headless " +urls: +- https://github.com/sensepost/gowitness) +- https://img.shields.io/github/stars/sensepost/gowitness) +- https://img.shields.io/github/languages/top/sensepost/gowitness) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/graphql-voyager.yaml b/weapons/graphql-voyager.yaml new file mode 100644 index 0000000..1ae12f2 --- /dev/null +++ b/weapons/graphql-voyager.yaml @@ -0,0 +1,15 @@ +--- +name: graphql-voyager +description: "\U0001F6F0️ Represent any GraphQL API as an interactive graph " +urls: +- https://github.com/APIs-guru/graphql-voyager) +- https://img.shields.io/github/stars/APIs-guru/graphql-voyager) +- https://img.shields.io/github/languages/top/APIs-guru/graphql-voyager) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/grc.yaml b/weapons/grc.yaml new file mode 100644 index 0000000..2e4de8c --- /dev/null +++ b/weapons/grc.yaml @@ -0,0 +1,12 @@ +--- +name: grc +description: generic colouriser +urls: +- https://github.com/garabik/grc) +- https://img.shields.io/github/stars/garabik/grc) +- https://img.shields.io/github/languages/top/garabik/grc) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/grex.yaml b/weapons/grex.yaml new file mode 100644 index 0000000..27835a6 --- /dev/null +++ b/weapons/grex.yaml @@ -0,0 +1,13 @@ +--- +name: grex +description: A command-line tool and library for generating regular expressions from + user-provided test cases +urls: +- https://github.com/pemistahl/grex) +- https://img.shields.io/github/stars/pemistahl/grex) +- https://img.shields.io/github/languages/top/pemistahl/grex) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/gron.yaml b/weapons/gron.yaml new file mode 100644 index 0000000..ffb6136 --- /dev/null +++ b/weapons/gron.yaml @@ -0,0 +1,15 @@ +--- +name: gron +description: 'Make JSON greppable! ' +urls: +- https://github.com/tomnomnom/gron) +- https://img.shields.io/github/stars/tomnomnom/gron) +- https://img.shields.io/github/languages/top/tomnomnom/gron) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/h2csmuggler.yaml b/weapons/h2csmuggler.yaml new file mode 100644 index 0000000..cd3714c --- /dev/null +++ b/weapons/h2csmuggler.yaml @@ -0,0 +1,15 @@ +--- +name: h2csmuggler +description: HTTP Request Smuggling Detection Tool +urls: +- https://github.com/assetnote/h2csmuggler) +- https://img.shields.io/github/stars/assetnote/h2csmuggler) +- https://img.shields.io/github/languages/top/assetnote/h2csmuggler) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/hacks.yaml b/weapons/hacks.yaml new file mode 100644 index 0000000..f015781 --- /dev/null +++ b/weapons/hacks.yaml @@ -0,0 +1,15 @@ +--- +name: hacks +description: 'A collection of hacks and one-off scripts ' +urls: +- https://github.com/tomnomnom/hacks) +- https://img.shields.io/github/stars/tomnomnom/hacks) +- https://img.shields.io/github/languages/top/tomnomnom/hacks) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/hakcheckurl.yaml b/weapons/hakcheckurl.yaml new file mode 100644 index 0000000..80bf7c6 --- /dev/null +++ b/weapons/hakcheckurl.yaml @@ -0,0 +1,12 @@ +--- +name: hakcheckurl +description: Takes a list of URLs and returns their HTTP response codes +urls: +- https://github.com/hakluke/hakcheckurl) +- https://img.shields.io/github/stars/hakluke/hakcheckurl) +- https://img.shields.io/github/languages/top/hakluke/hakcheckurl) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/hakrawler.yaml b/weapons/hakrawler.yaml new file mode 100644 index 0000000..2185850 --- /dev/null +++ b/weapons/hakrawler.yaml @@ -0,0 +1,16 @@ +--- +name: hakrawler +description: 'Simple, fast web crawler designed for easy, quick discovery of endpoints + and assets within a web application ' +urls: +- https://github.com/hakluke/hakrawler) +- https://img.shields.io/github/stars/hakluke/hakrawler) +- https://img.shields.io/github/languages/top/hakluke/hakrawler) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/hakrevdns.yaml b/weapons/hakrevdns.yaml new file mode 100644 index 0000000..7964126 --- /dev/null +++ b/weapons/hakrevdns.yaml @@ -0,0 +1,15 @@ +--- +name: hakrevdns +description: 'Small, fast tool for performing reverse DNS lookups en masse. ' +urls: +- https://github.com/hakluke/hakrevdns) +- https://img.shields.io/github/stars/hakluke/hakrevdns) +- https://img.shields.io/github/languages/top/hakluke/hakrevdns) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/haktrails.yaml b/weapons/haktrails.yaml new file mode 100644 index 0000000..f441719 --- /dev/null +++ b/weapons/haktrails.yaml @@ -0,0 +1,12 @@ +--- +name: haktrails +description: Golang client for querying SecurityTrails API data +urls: +- https://github.com/hakluke/haktrails) +- https://img.shields.io/github/stars/hakluke/haktrails) +- https://img.shields.io/github/languages/top/hakluke/haktrails) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/hashcat.yaml b/weapons/hashcat.yaml new file mode 100644 index 0000000..de3a859 --- /dev/null +++ b/weapons/hashcat.yaml @@ -0,0 +1,12 @@ +--- +name: hashcat +description: 'World''s fastest and most advanced password recovery utility ' +urls: +- https://github.com/hashcat/hashcat/) +- https://img.shields.io/github/stars/hashcat/hashcat/) +- https://img.shields.io/github/languages/top/hashcat/hashcat/) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/headi.yaml b/weapons/headi.yaml new file mode 100644 index 0000000..c567b3e --- /dev/null +++ b/weapons/headi.yaml @@ -0,0 +1,12 @@ +--- +name: headi +description: Customisable and automated HTTP header injection +urls: +- https://github.com/mlcsec/headi) +- https://img.shields.io/github/stars/mlcsec/headi) +- https://img.shields.io/github/languages/top/mlcsec/headi) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/hetty.yaml b/weapons/hetty.yaml new file mode 100644 index 0000000..c589ccd --- /dev/null +++ b/weapons/hetty.yaml @@ -0,0 +1,17 @@ +--- +name: hetty +description: Hetty is an HTTP toolkit for security research. It aims to become an + open source alternative to commercial software like Burp Suite Pro, with powerful + features tailored to the needs of the infosec and bug bounty community. +urls: +- https://github.com/dstotijn/hetty) +- https://img.shields.io/github/stars/dstotijn/hetty) +- https://img.shields.io/github/languages/top/dstotijn/hetty) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/hinject.yaml b/weapons/hinject.yaml new file mode 100644 index 0000000..24eafe1 --- /dev/null +++ b/weapons/hinject.yaml @@ -0,0 +1,15 @@ +--- +name: hinject +description: 'Host Header Injection Checker ' +urls: +- https://github.com/dwisiswant0/hinject) +- https://img.shields.io/github/stars/dwisiswant0/hinject) +- https://img.shields.io/github/languages/top/dwisiswant0/hinject) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/htcat.yaml b/weapons/htcat.yaml new file mode 100644 index 0000000..12bb558 --- /dev/null +++ b/weapons/htcat.yaml @@ -0,0 +1,15 @@ +--- +name: htcat +description: 'Parallel and Pipelined HTTP GET Utility ' +urls: +- https://github.com/htcat/htcat) +- https://img.shields.io/github/stars/htcat/htcat) +- https://img.shields.io/github/languages/top/htcat/htcat) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/http-request-smuggler.yaml b/weapons/http-request-smuggler.yaml new file mode 100644 index 0000000..2b0e0eb --- /dev/null +++ b/weapons/http-request-smuggler.yaml @@ -0,0 +1,13 @@ +--- +name: http-request-smuggler +description: +urls: +- https://github.com/PortSwigger/http-request-smuggler) +- https://img.shields.io/github/stars/PortSwigger/http-request-smuggler) +- https://img.shields.io/github/languages/top/PortSwigger/http-request-smuggler) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/http-request-smuggling.yaml b/weapons/http-request-smuggling.yaml new file mode 100644 index 0000000..58dd1aa --- /dev/null +++ b/weapons/http-request-smuggling.yaml @@ -0,0 +1,12 @@ +--- +name: http-request-smuggling +description: HTTP Request Smuggling Detection Tool +urls: +- https://github.com/anshumanpattnaik/http-request-smuggling) +- https://img.shields.io/github/stars/anshumanpattnaik/http-request-smuggling) +- https://img.shields.io/github/languages/top/anshumanpattnaik/http-request-smuggling) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/http-script-generator.yaml b/weapons/http-script-generator.yaml new file mode 100644 index 0000000..948870e --- /dev/null +++ b/weapons/http-script-generator.yaml @@ -0,0 +1,14 @@ +--- +name: http-script-generator +description: +urls: +- https://github.com/h3xstream/http-script-generator) +- https://img.shields.io/github/stars/h3xstream/http-script-generator) +- https://img.shields.io/github/languages/top/h3xstream/http-script-generator) +category: tool-addon +types: [] +platform: +- burpsuite +- zap +lang: [] +tags: [] diff --git a/weapons/http2smugl.yaml b/weapons/http2smugl.yaml new file mode 100644 index 0000000..13f0207 --- /dev/null +++ b/weapons/http2smugl.yaml @@ -0,0 +1,13 @@ +--- +name: http2smugl +description: This tool helps to detect and exploit HTTP request smuggling in cases + it can be achieved via HTTP/2 -> HTTP/1.1 conversion by the frontend server. +urls: +- https://github.com/neex/http2smugl) +- https://img.shields.io/github/stars/neex/http2smugl) +- https://img.shields.io/github/languages/top/neex/http2smugl) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/httpie.yaml b/weapons/httpie.yaml new file mode 100644 index 0000000..f2cac1c --- /dev/null +++ b/weapons/httpie.yaml @@ -0,0 +1,15 @@ +--- +name: httpie +description: "As easy as /aitch-tee-tee-pie/ \U0001F967 Modern, user-friendly command-line + HTTP client for the API era. JSON support, colors, sessions, downloads, plugins + & more. https://twitter.com/httpie" +urls: +- https://github.com/httpie/httpie) +- https://twitter.com/httpie +- https://img.shields.io/github/stars/httpie/httpie) +- https://img.shields.io/github/languages/top/httpie/httpie) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/httprobe.yaml b/weapons/httprobe.yaml new file mode 100644 index 0000000..e2fd2e5 --- /dev/null +++ b/weapons/httprobe.yaml @@ -0,0 +1,15 @@ +--- +name: httprobe +description: 'Take a list of domains and probe for working HTTP and HTTPS servers ' +urls: +- https://github.com/tomnomnom/httprobe) +- https://img.shields.io/github/stars/tomnomnom/httprobe) +- https://img.shields.io/github/languages/top/tomnomnom/httprobe) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/httptoolkit.yaml b/weapons/httptoolkit.yaml new file mode 100644 index 0000000..b1f29ca --- /dev/null +++ b/weapons/httptoolkit.yaml @@ -0,0 +1,13 @@ +--- +name: httptoolkit +description: HTTP Toolkit is a beautiful & open-source tool for debugging, testing + and building with HTTP(S) on Windows, Linux & Mac +urls: +- https://github.com/httptoolkit/httptoolkit) +- https://img.shields.io/github/stars/httptoolkit/httptoolkit) +- https://img.shields.io/github/languages/top/httptoolkit/httptoolkit) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/httpx.yaml b/weapons/httpx.yaml new file mode 100644 index 0000000..a6a0370 --- /dev/null +++ b/weapons/httpx.yaml @@ -0,0 +1,17 @@ +--- +name: httpx +description: 'httpx is a fast and multi-purpose HTTP toolkit allow to run multiple + probers using retryablehttp library, it is designed to maintain the result reliability + with increased threads. ' +urls: +- https://github.com/projectdiscovery/httpx) +- https://img.shields.io/github/stars/projectdiscovery/httpx) +- https://img.shields.io/github/languages/top/projectdiscovery/httpx) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/hurl.yaml b/weapons/hurl.yaml new file mode 100644 index 0000000..6e48be3 --- /dev/null +++ b/weapons/hurl.yaml @@ -0,0 +1,12 @@ +--- +name: hurl +description: Hurl, run and test HTTP requests. +urls: +- https://github.com/Orange-OpenSource/hurl) +- https://img.shields.io/github/stars/Orange-OpenSource/hurl) +- https://img.shields.io/github/languages/top/Orange-OpenSource/hurl) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/inql.yaml b/weapons/inql.yaml new file mode 100644 index 0000000..de41ea3 --- /dev/null +++ b/weapons/inql.yaml @@ -0,0 +1,13 @@ +--- +name: inql +description: +urls: +- https://github.com/doyensec/inql) +- https://img.shields.io/github/stars/doyensec/inql) +- https://img.shields.io/github/languages/top/doyensec/inql) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/interactsh.yaml b/weapons/interactsh.yaml new file mode 100644 index 0000000..fdc827f --- /dev/null +++ b/weapons/interactsh.yaml @@ -0,0 +1,12 @@ +--- +name: interactsh +description: An OOB interaction gathering server and client library +urls: +- https://github.com/projectdiscovery/interactsh) +- https://img.shields.io/github/stars/projectdiscovery/interactsh) +- https://img.shields.io/github/languages/top/projectdiscovery/interactsh) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/intrigue-core.yaml b/weapons/intrigue-core.yaml new file mode 100644 index 0000000..881a76e --- /dev/null +++ b/weapons/intrigue-core.yaml @@ -0,0 +1,15 @@ +--- +name: intrigue-core +description: 'Discover Your Attack Surface ' +urls: +- https://github.com/intrigueio/intrigue-core) +- https://img.shields.io/github/stars/intrigueio/intrigue-core) +- https://img.shields.io/github/languages/top/intrigueio/intrigue-core) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/jaeles.yaml b/weapons/jaeles.yaml new file mode 100644 index 0000000..cfff22b --- /dev/null +++ b/weapons/jaeles.yaml @@ -0,0 +1,15 @@ +--- +name: jaeles +description: 'The Swiss Army knife for automated Web Application Testing ' +urls: +- https://github.com/jaeles-project/jaeles) +- https://img.shields.io/github/stars/jaeles-project/jaeles) +- https://img.shields.io/github/languages/top/jaeles-project/jaeles) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/jsfuck.yaml b/weapons/jsfuck.yaml new file mode 100644 index 0000000..f775dd8 --- /dev/null +++ b/weapons/jsfuck.yaml @@ -0,0 +1,12 @@ +--- +name: jsfuck +description: Write any JavaScript with 6 Characters +urls: +- https://github.com/aemkei/jsfuck) +- https://img.shields.io/github/stars/aemkei/jsfuck) +- https://img.shields.io/github/languages/top/aemkei/jsfuck) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/jsonwebtoken.github.io.yaml b/weapons/jsonwebtoken.github.io.yaml new file mode 100644 index 0000000..fefcbaf --- /dev/null +++ b/weapons/jsonwebtoken.github.io.yaml @@ -0,0 +1,14 @@ +--- +name: jsonwebtoken.github.io +description: JWT En/Decode and Verify +urls: +- https://github.com/jsonwebtoken/jsonwebtoken.github.io) +- https://img.shields.io/github/stars/jsonwebtoken/jsonwebtoken.github.io) +- https://img.shields.io/github/languages/top/jsonwebtoken/jsonwebtoken.github.io) +category: browser-addon +types: [] +platform: +- chrome +- firefox +lang: [] +tags: [] diff --git a/weapons/jsprime.yaml b/weapons/jsprime.yaml new file mode 100644 index 0000000..823d0dc --- /dev/null +++ b/weapons/jsprime.yaml @@ -0,0 +1,12 @@ +--- +name: jsprime +description: a javascript static security analysis tool +urls: +- https://github.com/dpnishant/jsprime) +- https://img.shields.io/github/stars/dpnishant/jsprime) +- https://img.shields.io/github/languages/top/dpnishant/jsprime) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/jwt-cracker.yaml b/weapons/jwt-cracker.yaml new file mode 100644 index 0000000..639d1d3 --- /dev/null +++ b/weapons/jwt-cracker.yaml @@ -0,0 +1,15 @@ +--- +name: jwt-cracker +description: 'Simple HS256 JWT token brute force cracker ' +urls: +- https://github.com/lmammino/jwt-cracker) +- https://img.shields.io/github/stars/lmammino/jwt-cracker) +- https://img.shields.io/github/languages/top/lmammino/jwt-cracker) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/jwt-hack.yaml b/weapons/jwt-hack.yaml new file mode 100644 index 0000000..f816b01 --- /dev/null +++ b/weapons/jwt-hack.yaml @@ -0,0 +1,16 @@ +--- +name: jwt-hack +description: "\U0001F529 jwt-hack is tool for hacking / security testing to JWT. Supported + for En/decoding JWT, Generate payload for JWT attack and very fast cracking(dict/brutefoce)" +urls: +- https://github.com/hahwul/jwt-hack) +- https://img.shields.io/github/stars/hahwul/jwt-hack) +- https://img.shields.io/github/languages/top/hahwul/jwt-hack) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/kiterunner.yaml b/weapons/kiterunner.yaml new file mode 100644 index 0000000..b245de9 --- /dev/null +++ b/weapons/kiterunner.yaml @@ -0,0 +1,12 @@ +--- +name: kiterunner +description: Contextual Content Discovery Tool +urls: +- https://github.com/assetnote/kiterunner) +- https://img.shields.io/github/stars/assetnote/kiterunner) +- https://img.shields.io/github/languages/top/assetnote/kiterunner) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/knife.yaml b/weapons/knife.yaml new file mode 100644 index 0000000..6c8dc4e --- /dev/null +++ b/weapons/knife.yaml @@ -0,0 +1,13 @@ +--- +name: knife +description: A burp extension that add some useful function to Context Menu 添加一些右键菜单让burp用起来更顺畅 +urls: +- https://github.com/bit4woo/knife) +- https://img.shields.io/github/stars/bit4woo/knife) +- https://img.shields.io/github/languages/top/bit4woo/knife) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/knock.yaml b/weapons/knock.yaml new file mode 100644 index 0000000..539952b --- /dev/null +++ b/weapons/knock.yaml @@ -0,0 +1,15 @@ +--- +name: knock +description: 'Knock Subdomain Scan ' +urls: +- https://github.com/guelfoweb/knock) +- https://img.shields.io/github/stars/guelfoweb/knock) +- https://img.shields.io/github/languages/top/guelfoweb/knock) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/lazyrecon.yaml b/weapons/lazyrecon.yaml new file mode 100644 index 0000000..69fa40f --- /dev/null +++ b/weapons/lazyrecon.yaml @@ -0,0 +1,16 @@ +--- +name: lazyrecon +description: 'This script is intended to automate your reconnaissance process in an + organized fashion ' +urls: +- https://github.com/nahamsec/lazyrecon) +- https://img.shields.io/github/stars/nahamsec/lazyrecon) +- https://img.shields.io/github/languages/top/nahamsec/lazyrecon) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/longtongue.yaml b/weapons/longtongue.yaml new file mode 100644 index 0000000..3e550a5 --- /dev/null +++ b/weapons/longtongue.yaml @@ -0,0 +1,12 @@ +--- +name: longtongue +description: Customized Password/Passphrase List inputting Target Info +urls: +- https://github.com/edoardottt/longtongue) +- https://img.shields.io/github/stars/edoardottt/longtongue) +- https://img.shields.io/github/languages/top/edoardottt/longtongue) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/masscan.yaml b/weapons/masscan.yaml new file mode 100644 index 0000000..d9b4528 --- /dev/null +++ b/weapons/masscan.yaml @@ -0,0 +1,16 @@ +--- +name: masscan +description: 'TCP port scanner, spews SYN packets asynchronously, scanning entire + Internet in under 5 minutes. ' +urls: +- https://github.com/robertdavidgraham/masscan) +- https://img.shields.io/github/stars/robertdavidgraham/masscan) +- https://img.shields.io/github/languages/top/robertdavidgraham/masscan) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/medusa.yaml b/weapons/medusa.yaml new file mode 100644 index 0000000..5fa72fa --- /dev/null +++ b/weapons/medusa.yaml @@ -0,0 +1,15 @@ +--- +name: medusa +description: 'Fastest recursive HTTP fuzzer, like a Ferrari. ' +urls: +- https://github.com/riza/medusa) +- https://img.shields.io/github/stars/riza/medusa) +- https://img.shields.io/github/languages/top/riza/medusa) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/meg.yaml b/weapons/meg.yaml new file mode 100644 index 0000000..5e2ab76 --- /dev/null +++ b/weapons/meg.yaml @@ -0,0 +1,15 @@ +--- +name: meg +description: 'Fetch many paths for many hosts - without killing the hosts ' +urls: +- https://github.com/tomnomnom/meg) +- https://img.shields.io/github/stars/tomnomnom/meg) +- https://img.shields.io/github/languages/top/tomnomnom/meg) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/megplus.yaml b/weapons/megplus.yaml new file mode 100644 index 0000000..2ba48de --- /dev/null +++ b/weapons/megplus.yaml @@ -0,0 +1,15 @@ +--- +name: megplus +description: 'Automated reconnaissance wrapper — TomNomNom''s meg on steroids. [DEPRECATED] ' +urls: +- https://github.com/EdOverflow/megplus) +- https://img.shields.io/github/stars/EdOverflow/megplus) +- https://img.shields.io/github/languages/top/EdOverflow/megplus) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/naabu.yaml b/weapons/naabu.yaml new file mode 100644 index 0000000..67cb90a --- /dev/null +++ b/weapons/naabu.yaml @@ -0,0 +1,17 @@ +--- +name: naabu +description: 'A fast port scanner written in go with focus on reliability and simplicity. + Designed to be used in combination with other tools for attack surface discovery + in bug bounties and pentests ' +urls: +- https://github.com/projectdiscovery/naabu) +- https://img.shields.io/github/stars/projectdiscovery/naabu) +- https://img.shields.io/github/languages/top/projectdiscovery/naabu) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/nikto.yaml b/weapons/nikto.yaml new file mode 100644 index 0000000..27d5af9 --- /dev/null +++ b/weapons/nikto.yaml @@ -0,0 +1,15 @@ +--- +name: nikto +description: 'Nikto web server scanner ' +urls: +- https://github.com/sullo/nikto) +- https://img.shields.io/github/stars/sullo/nikto) +- https://img.shields.io/github/languages/top/sullo/nikto) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/nmap.yaml b/weapons/nmap.yaml new file mode 100644 index 0000000..d13fc9d --- /dev/null +++ b/weapons/nmap.yaml @@ -0,0 +1,14 @@ +--- +name: nmap +description: 'Nmap - the Network Mapper. Github mirror of official SVN repository. ' +urls: +- https://github.com/nmap/nmap) +- https://img.shields.io/github/stars/nmap/nmap) +- https://img.shields.io/github/languages/top/nmap/nmap) +category: tool +types: [] +platform: +- linux +- macos +lang: [] +tags: [] diff --git a/weapons/nosqli.yaml b/weapons/nosqli.yaml new file mode 100644 index 0000000..d1226d6 --- /dev/null +++ b/weapons/nosqli.yaml @@ -0,0 +1,15 @@ +--- +name: nosqli +description: NoSql Injection CLI tool +urls: +- https://github.com/Charlie-belmer/nosqli) +- https://img.shields.io/github/stars/Charlie-belmer/nosqli) +- https://img.shields.io/github/languages/top/Charlie-belmer/nosqli) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/nuclei.yaml b/weapons/nuclei.yaml new file mode 100644 index 0000000..ef7141c --- /dev/null +++ b/weapons/nuclei.yaml @@ -0,0 +1,16 @@ +--- +name: nuclei +description: 'Nuclei is a fast tool for configurable targeted scanning based on templates + offering massive extensibility and ease of use. ' +urls: +- https://github.com/projectdiscovery/nuclei) +- https://img.shields.io/github/stars/projectdiscovery/nuclei) +- https://img.shields.io/github/languages/top/projectdiscovery/nuclei) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/ob_hacky_slack.yaml b/weapons/ob_hacky_slack.yaml new file mode 100644 index 0000000..e0d7c98 --- /dev/null +++ b/weapons/ob_hacky_slack.yaml @@ -0,0 +1,12 @@ +--- +name: ob_hacky_slack +description: Hacky Slack - a bash script that sends beautiful messages to Slack +urls: +- https://github.com/openbridge/ob_hacky_slack) +- https://img.shields.io/github/stars/openbridge/ob_hacky_slack) +- https://img.shields.io/github/languages/top/openbridge/ob_hacky_slack) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/owasp-zap-jwt-addon.yaml b/weapons/owasp-zap-jwt-addon.yaml new file mode 100644 index 0000000..4fb8297 --- /dev/null +++ b/weapons/owasp-zap-jwt-addon.yaml @@ -0,0 +1,13 @@ +--- +name: owasp-zap-jwt-addon +description: +urls: +- https://github.com/SasanLabs/owasp-zap-jwt-addon) +- https://img.shields.io/github/stars/SasanLabs/owasp-zap-jwt-addon) +- https://img.shields.io/github/languages/top/SasanLabs/owasp-zap-jwt-addon) +category: tool-addon +types: [] +platform: +- zap +lang: [] +tags: [] diff --git a/weapons/oxml_xxe.yaml b/weapons/oxml_xxe.yaml new file mode 100644 index 0000000..1d4bd8a --- /dev/null +++ b/weapons/oxml_xxe.yaml @@ -0,0 +1,15 @@ +--- +name: oxml_xxe +description: 'A tool for embedding XXE/XML exploits into different filetypes ' +urls: +- https://github.com/BuffaloWill/oxml_xxe) +- https://img.shields.io/github/stars/BuffaloWill/oxml_xxe) +- https://img.shields.io/github/languages/top/BuffaloWill/oxml_xxe) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/pagodo.yaml b/weapons/pagodo.yaml new file mode 100644 index 0000000..5b58da8 --- /dev/null +++ b/weapons/pagodo.yaml @@ -0,0 +1,13 @@ +--- +name: pagodo +description: pagodo (Passive Google Dork) - Automate Google Hacking Database scraping + and searching +urls: +- https://github.com/opsdisk/pagodo) +- https://img.shields.io/github/stars/opsdisk/pagodo) +- https://img.shields.io/github/languages/top/opsdisk/pagodo) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/param-miner.yaml b/weapons/param-miner.yaml new file mode 100644 index 0000000..e12ab9c --- /dev/null +++ b/weapons/param-miner.yaml @@ -0,0 +1,13 @@ +--- +name: param-miner +description: +urls: +- https://github.com/PortSwigger/param-miner) +- https://img.shields.io/github/stars/PortSwigger/param-miner) +- https://img.shields.io/github/languages/top/PortSwigger/param-miner) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/parameth.yaml b/weapons/parameth.yaml new file mode 100644 index 0000000..d12373c --- /dev/null +++ b/weapons/parameth.yaml @@ -0,0 +1,12 @@ +--- +name: parameth +description: This tool can be used to brute discover GET and POST parameters +urls: +- https://github.com/maK-/parameth) +- https://img.shields.io/github/stars/maK-/parameth) +- https://img.shields.io/github/languages/top/maK-/parameth) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/pentest-tools.yaml b/weapons/pentest-tools.yaml new file mode 100644 index 0000000..eaa9d58 --- /dev/null +++ b/weapons/pentest-tools.yaml @@ -0,0 +1,15 @@ +--- +name: pentest-tools +description: 'Custom pentesting tools ' +urls: +- https://github.com/gwen001/pentest-tools) +- https://img.shields.io/github/stars/gwen001/pentest-tools) +- https://img.shields.io/github/languages/top/gwen001/pentest-tools) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/pet.yaml b/weapons/pet.yaml new file mode 100644 index 0000000..5a026dc --- /dev/null +++ b/weapons/pet.yaml @@ -0,0 +1,14 @@ +--- +name: pet +description: Simple command-line snippet manager, written in Go. +urls: +- https://github.com/knqyf263/pet) +- https://img.shields.io/github/stars/knqyf263/pet) +- https://img.shields.io/github/languages/top/knqyf263/pet) +category: tool +types: [] +platform: +- linux +- macos +lang: [] +tags: [] diff --git a/weapons/plution.yaml b/weapons/plution.yaml new file mode 100644 index 0000000..f5de5ad --- /dev/null +++ b/weapons/plution.yaml @@ -0,0 +1,12 @@ +--- +name: plution +description: Prototype pollution scanner using headless chrome +urls: +- https://github.com/raverrr/plution) +- https://img.shields.io/github/stars/raverrr/plution) +- https://img.shields.io/github/languages/top/raverrr/plution) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/postMessage-tracker.yaml b/weapons/postMessage-tracker.yaml new file mode 100644 index 0000000..50ac4ac --- /dev/null +++ b/weapons/postMessage-tracker.yaml @@ -0,0 +1,14 @@ +--- +name: postMessage-tracker +description: A Chrome Extension to track postMessage usage (url, domain and stack) + both by logging using CORS and also visually as an extension-icon +urls: +- https://github.com/fransr/postMessage-tracker) +- https://img.shields.io/github/stars/fransr/postMessage-tracker) +- https://img.shields.io/github/languages/top/fransr/postMessage-tracker) +category: browser-addon +types: [] +platform: +- chrome +lang: [] +tags: [] diff --git a/weapons/ppfuzz.yaml b/weapons/ppfuzz.yaml new file mode 100644 index 0000000..d502be9 --- /dev/null +++ b/weapons/ppfuzz.yaml @@ -0,0 +1,13 @@ +--- +name: ppfuzz +description: "A fast tool to scan client-side prototype pollution vulnerability written + in Rust. \U0001F980" +urls: +- https://github.com/dwisiswant0/ppfuzz) +- https://img.shields.io/github/stars/dwisiswant0/ppfuzz) +- https://img.shields.io/github/languages/top/dwisiswant0/ppfuzz) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/ppmap.yaml b/weapons/ppmap.yaml new file mode 100644 index 0000000..f19d025 --- /dev/null +++ b/weapons/ppmap.yaml @@ -0,0 +1,13 @@ +--- +name: ppmap +description: A scanner/exploitation tool written in GO, which leverages client-side + Prototype Pollution to XSS by exploiting known gadgets. +urls: +- https://github.com/kleiton0x00/ppmap) +- https://img.shields.io/github/stars/kleiton0x00/ppmap) +- https://img.shields.io/github/languages/top/kleiton0x00/ppmap) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/proxify.yaml b/weapons/proxify.yaml new file mode 100644 index 0000000..e742817 --- /dev/null +++ b/weapons/proxify.yaml @@ -0,0 +1,13 @@ +--- +name: proxify +description: Swiss Army knife Proxy tool for HTTP/HTTPS traffic capture, manipulation + and replay +urls: +- https://github.com/projectdiscovery/proxify) +- https://img.shields.io/github/stars/projectdiscovery/proxify) +- https://img.shields.io/github/languages/top/projectdiscovery/proxify) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/puredns.yaml b/weapons/puredns.yaml new file mode 100644 index 0000000..abf8736 --- /dev/null +++ b/weapons/puredns.yaml @@ -0,0 +1,13 @@ +--- +name: puredns +description: Puredns is a fast domain resolver and subdomain bruteforcing tool that + can accurately filter out wildcard subdomains and DNS poisoned entries. +urls: +- https://github.com/d3mondev/puredns) +- https://img.shields.io/github/stars/d3mondev/puredns) +- https://img.shields.io/github/languages/top/d3mondev/puredns) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/pwncat.yaml b/weapons/pwncat.yaml new file mode 100644 index 0000000..34a54c6 --- /dev/null +++ b/weapons/pwncat.yaml @@ -0,0 +1,16 @@ +--- +name: pwncat +description: 'pwncat - netcat on steroids with Firewall, IDS/IPS evasion, bind and + reverse shell, self-injecting shell and port forwarding magic - and its fully scriptable + with Python (PSE) ' +urls: +- https://github.com/cytopia/pwncat) +- https://img.shields.io/github/stars/cytopia/pwncat) +- https://img.shields.io/github/languages/top/cytopia/pwncat) +category: tool +types: [] +platform: +- linux +- macos +lang: [] +tags: [] diff --git a/weapons/qsreplace.yaml b/weapons/qsreplace.yaml new file mode 100644 index 0000000..432755a --- /dev/null +++ b/weapons/qsreplace.yaml @@ -0,0 +1,16 @@ +--- +name: qsreplace +description: 'Accept URLs on stdin, replace all query string values with a user-supplied + value ' +urls: +- https://github.com/tomnomnom/qsreplace) +- https://img.shields.io/github/stars/tomnomnom/qsreplace) +- https://img.shields.io/github/languages/top/tomnomnom/qsreplace) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/quickjack.yaml b/weapons/quickjack.yaml new file mode 100644 index 0000000..38849b7 --- /dev/null +++ b/weapons/quickjack.yaml @@ -0,0 +1,13 @@ +--- +name: quickjack +description: Quickjack is a point-and-click tool for intuitively producing advanced + clickjacking and frame slicing attacks. +urls: +- https://github.com/samyk/quickjack) +- https://img.shields.io/github/stars/samyk/quickjack) +- https://img.shields.io/github/languages/top/samyk/quickjack) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/rapidscan.yaml b/weapons/rapidscan.yaml new file mode 100644 index 0000000..4a1092f --- /dev/null +++ b/weapons/rapidscan.yaml @@ -0,0 +1,15 @@ +--- +name: rapidscan +description: 'The Multi-Tool Web Vulnerability Scanner. ' +urls: +- https://github.com/skavngr/rapidscan) +- https://img.shields.io/github/stars/skavngr/rapidscan) +- https://img.shields.io/github/languages/top/skavngr/rapidscan) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/recon_profile.yaml b/weapons/recon_profile.yaml new file mode 100644 index 0000000..90eb02e --- /dev/null +++ b/weapons/recon_profile.yaml @@ -0,0 +1,15 @@ +--- +name: recon_profile +description: 'Recon profile (bash profile) for bugbounty ' +urls: +- https://github.com/nahamsec/recon_profile) +- https://img.shields.io/github/stars/nahamsec/recon_profile) +- https://img.shields.io/github/languages/top/nahamsec/recon_profile) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/reconftw.yaml b/weapons/reconftw.yaml new file mode 100644 index 0000000..4207aa6 --- /dev/null +++ b/weapons/reconftw.yaml @@ -0,0 +1,13 @@ +--- +name: reconftw +description: reconFTW is a tool designed to perform automated recon on a target domain + by running the best set of tools to perform scanning and finding out vulnerabilities +urls: +- https://github.com/six2dez/reconftw) +- https://img.shields.io/github/stars/six2dez/reconftw) +- https://img.shields.io/github/languages/top/six2dez/reconftw) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/reflect.yaml b/weapons/reflect.yaml new file mode 100644 index 0000000..d533b35 --- /dev/null +++ b/weapons/reflect.yaml @@ -0,0 +1,13 @@ +--- +name: reflect +description: +urls: +- https://github.com/TypeError/reflect) +- https://img.shields.io/github/stars/TypeError/reflect) +- https://img.shields.io/github/languages/top/TypeError/reflect) +category: tool-addon +types: [] +platform: +- zap +lang: [] +tags: [] diff --git a/weapons/reflected-parameters.yaml b/weapons/reflected-parameters.yaml new file mode 100644 index 0000000..5f9b9e9 --- /dev/null +++ b/weapons/reflected-parameters.yaml @@ -0,0 +1,13 @@ +--- +name: reflected-parameters +description: +urls: +- https://github.com/PortSwigger/reflected-parameters) +- https://img.shields.io/github/stars/PortSwigger/reflected-parameters) +- https://img.shields.io/github/languages/top/PortSwigger/reflected-parameters) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/rengine.yaml b/weapons/rengine.yaml new file mode 100644 index 0000000..4af8331 --- /dev/null +++ b/weapons/rengine.yaml @@ -0,0 +1,17 @@ +--- +name: rengine +description: 'reNgine is an automated reconnaissance framework meant for gathering + information during penetration testing of web applications. reNgine has customizable + scan engines, which can be used to scan the websites, endpoints, and gather information. ' +urls: +- https://github.com/yogeshojha/rengine) +- https://img.shields.io/github/stars/yogeshojha/rengine) +- https://img.shields.io/github/languages/top/yogeshojha/rengine) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/rusolver.yaml b/weapons/rusolver.yaml new file mode 100644 index 0000000..42bfdb8 --- /dev/null +++ b/weapons/rusolver.yaml @@ -0,0 +1,12 @@ +--- +name: rusolver +description: Fast and accurate DNS resolver. +urls: +- https://github.com/Edu4rdSHL/rusolver) +- https://img.shields.io/github/stars/Edu4rdSHL/rusolver) +- https://img.shields.io/github/languages/top/Edu4rdSHL/rusolver) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/s3reverse.yaml b/weapons/s3reverse.yaml new file mode 100644 index 0000000..a736c8d --- /dev/null +++ b/weapons/s3reverse.yaml @@ -0,0 +1,16 @@ +--- +name: s3reverse +description: 'The format of various s3 buckets is convert in one format. for bugbounty + and security testing. ' +urls: +- https://github.com/hahwul/s3reverse) +- https://img.shields.io/github/stars/hahwul/s3reverse) +- https://img.shields.io/github/languages/top/hahwul/s3reverse) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/safecopy.yaml b/weapons/safecopy.yaml new file mode 100644 index 0000000..bccea33 --- /dev/null +++ b/weapons/safecopy.yaml @@ -0,0 +1,13 @@ +--- +name: safecopy +description: +urls: +- https://github.com/yashrs/safecopy) +- https://img.shields.io/github/stars/yashrs/safecopy) +- https://img.shields.io/github/languages/top/yashrs/safecopy) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/scilla.yaml b/weapons/scilla.yaml new file mode 100644 index 0000000..18f0fcc --- /dev/null +++ b/weapons/scilla.yaml @@ -0,0 +1,16 @@ +--- +name: scilla +description: "\U0001F3F4‍☠️ Information Gathering tool \U0001F3F4‍☠️ dns/subdomain/port + enumeration" +urls: +- https://github.com/edoardottt/scilla) +- https://img.shields.io/github/stars/edoardottt/scilla) +- https://img.shields.io/github/languages/top/edoardottt/scilla) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/security-crawl-maze.yaml b/weapons/security-crawl-maze.yaml new file mode 100644 index 0000000..85cf3ab --- /dev/null +++ b/weapons/security-crawl-maze.yaml @@ -0,0 +1,14 @@ +--- +name: security-crawl-maze +description: Security Crawl Maze is a comprehensive testbed for web security crawlers. + It contains pages representing many ways in which one can link resources from a + valid HTML document. +urls: +- https://github.com/google/security-crawl-maze) +- https://img.shields.io/github/stars/google/security-crawl-maze) +- https://img.shields.io/github/languages/top/google/security-crawl-maze) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/security-research-pocs.yaml b/weapons/security-research-pocs.yaml new file mode 100644 index 0000000..da31b3d --- /dev/null +++ b/weapons/security-research-pocs.yaml @@ -0,0 +1,13 @@ +--- +name: security-research-pocs +description: Proof-of-concept codes created as part of security research done by Google + Security Team. +urls: +- https://github.com/google/security-research-pocs) +- https://img.shields.io/github/stars/google/security-research-pocs) +- https://img.shields.io/github/languages/top/google/security-research-pocs) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/shuffledns.yaml b/weapons/shuffledns.yaml new file mode 100644 index 0000000..8ba3685 --- /dev/null +++ b/weapons/shuffledns.yaml @@ -0,0 +1,17 @@ +--- +name: shuffledns +description: 'shuffleDNS is a wrapper around massdns written in go that allows you + to enumerate valid subdomains using active bruteforce as well as resolve subdomains + with wildcard handling and easy input-output support. ' +urls: +- https://github.com/projectdiscovery/shuffledns) +- https://img.shields.io/github/stars/projectdiscovery/shuffledns) +- https://img.shields.io/github/languages/top/projectdiscovery/shuffledns) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/singularity.yaml b/weapons/singularity.yaml new file mode 100644 index 0000000..e55ea46 --- /dev/null +++ b/weapons/singularity.yaml @@ -0,0 +1,12 @@ +--- +name: singularity +description: A DNS rebinding attack framework. +urls: +- https://github.com/nccgroup/singularity) +- https://img.shields.io/github/stars/nccgroup/singularity) +- https://img.shields.io/github/languages/top/nccgroup/singularity) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/slackcat.yaml b/weapons/slackcat.yaml new file mode 100644 index 0000000..6dc8646 --- /dev/null +++ b/weapons/slackcat.yaml @@ -0,0 +1,12 @@ +--- +name: slackcat +description: CLI utility to post files and command output to slack +urls: +- https://github.com/bcicen/slackcat) +- https://img.shields.io/github/stars/bcicen/slackcat) +- https://img.shields.io/github/languages/top/bcicen/slackcat) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/smuggler.yaml b/weapons/smuggler.yaml new file mode 100644 index 0000000..75d54b2 --- /dev/null +++ b/weapons/smuggler.yaml @@ -0,0 +1,16 @@ +--- +name: smuggler +description: 'Smuggler - An HTTP Request Smuggling / Desync testing tool written in + Python 3 ' +urls: +- https://github.com/defparam/smuggler) +- https://img.shields.io/github/stars/defparam/smuggler) +- https://img.shields.io/github/languages/top/defparam/smuggler) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/sn0int.yaml b/weapons/sn0int.yaml new file mode 100644 index 0000000..32db1ba --- /dev/null +++ b/weapons/sn0int.yaml @@ -0,0 +1,12 @@ +--- +name: sn0int +description: Semi-automatic OSINT framework and package manager +urls: +- https://github.com/kpcyrd/sn0int) +- https://img.shields.io/github/stars/kpcyrd/sn0int) +- https://img.shields.io/github/languages/top/kpcyrd/sn0int) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/spiderfoot.yaml b/weapons/spiderfoot.yaml new file mode 100644 index 0000000..e58cfbb --- /dev/null +++ b/weapons/spiderfoot.yaml @@ -0,0 +1,12 @@ +--- +name: spiderfoot +description: SpiderFoot automates OSINT collection so that you can focus on analysis. +urls: +- https://github.com/smicallef/spiderfoot) +- https://img.shields.io/github/stars/smicallef/spiderfoot) +- https://img.shields.io/github/languages/top/smicallef/spiderfoot) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/sqliv.yaml b/weapons/sqliv.yaml new file mode 100644 index 0000000..61ab844 --- /dev/null +++ b/weapons/sqliv.yaml @@ -0,0 +1,12 @@ +--- +name: sqliv +description: massive SQL injection vulnerability scanner +urls: +- https://github.com/the-robot/sqliv) +- https://img.shields.io/github/stars/the-robot/sqliv) +- https://img.shields.io/github/languages/top/the-robot/sqliv) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/sqlmap.yaml b/weapons/sqlmap.yaml new file mode 100644 index 0000000..0857324 --- /dev/null +++ b/weapons/sqlmap.yaml @@ -0,0 +1,14 @@ +--- +name: sqlmap +description: Automatic SQL injection and database takeover tool +urls: +- https://github.com/sqlmapproject/sqlmap) +- https://img.shields.io/github/stars/sqlmapproject/sqlmap) +- https://img.shields.io/github/languages/top/sqlmapproject/sqlmap) +category: tool +types: [] +platform: +- linux +- macos +lang: [] +tags: [] diff --git a/weapons/ssrf-sheriff.yaml b/weapons/ssrf-sheriff.yaml new file mode 100644 index 0000000..f29fc86 --- /dev/null +++ b/weapons/ssrf-sheriff.yaml @@ -0,0 +1,15 @@ +--- +name: ssrf-sheriff +description: 'A simple SSRF-testing sheriff written in Go ' +urls: +- https://github.com/teknogeek/ssrf-sheriff) +- https://img.shields.io/github/stars/teknogeek/ssrf-sheriff) +- https://img.shields.io/github/languages/top/teknogeek/ssrf-sheriff) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/subfinder.yaml b/weapons/subfinder.yaml new file mode 100644 index 0000000..e498d2f --- /dev/null +++ b/weapons/subfinder.yaml @@ -0,0 +1,17 @@ +--- +name: subfinder +description: 'Subfinder is a subdomain discovery tool that discovers valid subdomains + for websites. Designed as a passive framework to be useful for bug bounties and + safe for penetration testing. ' +urls: +- https://github.com/projectdiscovery/subfinder) +- https://img.shields.io/github/stars/projectdiscovery/subfinder) +- https://img.shields.io/github/languages/top/projectdiscovery/subfinder) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/subgen.yaml b/weapons/subgen.yaml new file mode 100644 index 0000000..10843f3 --- /dev/null +++ b/weapons/subgen.yaml @@ -0,0 +1,13 @@ +--- +name: subgen +description: A really simple utility to concate wordlists to a domain name - to pipe + into your favourite resolver! +urls: +- https://github.com/pry0cc/subgen) +- https://img.shields.io/github/stars/pry0cc/subgen) +- https://img.shields.io/github/languages/top/pry0cc/subgen) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/subjack.yaml b/weapons/subjack.yaml new file mode 100644 index 0000000..1b54d46 --- /dev/null +++ b/weapons/subjack.yaml @@ -0,0 +1,15 @@ +--- +name: subjack +description: 'Subdomain Takeover tool written in Go ' +urls: +- https://github.com/haccer/subjack) +- https://img.shields.io/github/stars/haccer/subjack) +- https://img.shields.io/github/languages/top/haccer/subjack) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/subjs.yaml b/weapons/subjs.yaml new file mode 100644 index 0000000..50f2c86 --- /dev/null +++ b/weapons/subjs.yaml @@ -0,0 +1,12 @@ +--- +name: subjs +description: Fetches javascript file from a list of URLS or subdomains. +urls: +- https://github.com/lc/subjs) +- https://img.shields.io/github/stars/lc/subjs) +- https://img.shields.io/github/languages/top/lc/subjs) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/subs_all.yaml b/weapons/subs_all.yaml new file mode 100644 index 0000000..4303823 --- /dev/null +++ b/weapons/subs_all.yaml @@ -0,0 +1,15 @@ +--- +name: subs_all +description: 'Subdomain Enumeration Wordlist. 8956437 unique words. Updated. ' +urls: +- https://github.com/emadshanab/subs_all) +- https://img.shields.io/github/stars/emadshanab/subs_all) +- https://img.shields.io/github/languages/top/emadshanab/subs_all) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/subzy.yaml b/weapons/subzy.yaml new file mode 100644 index 0000000..c24d637 --- /dev/null +++ b/weapons/subzy.yaml @@ -0,0 +1,12 @@ +--- +name: subzy +description: Subdomain takeover vulnerability checker +urls: +- https://github.com/LukaSikic/subzy) +- https://img.shields.io/github/stars/LukaSikic/subzy) +- https://img.shields.io/github/languages/top/LukaSikic/subzy) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/taborator.yaml b/weapons/taborator.yaml new file mode 100644 index 0000000..d57d661 --- /dev/null +++ b/weapons/taborator.yaml @@ -0,0 +1,13 @@ +--- +name: taborator +description: +urls: +- https://github.com/hackvertor/taborator) +- https://img.shields.io/github/stars/hackvertor/taborator) +- https://img.shields.io/github/languages/top/hackvertor/taborator) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/template-generator.yaml b/weapons/template-generator.yaml new file mode 100644 index 0000000..7b0d05f --- /dev/null +++ b/weapons/template-generator.yaml @@ -0,0 +1,18 @@ +--- +name: template-generator +description: 'A simple variable based template editor using handlebarjs+strapdownjs. + The idea is to use variables in markdown based files to easily replace the variables + with content. Data is saved temporarily in local storage. PHP is only needed to + generate the list of files in the dropdown of templates. ' +urls: +- https://github.com/fransr/template-generator) +- https://img.shields.io/github/stars/fransr/template-generator) +- https://img.shields.io/github/languages/top/fransr/template-generator) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/testssl.sh.yaml b/weapons/testssl.sh.yaml new file mode 100644 index 0000000..e6c126f --- /dev/null +++ b/weapons/testssl.sh.yaml @@ -0,0 +1,15 @@ +--- +name: testssl.sh +description: 'Testing TLS/SSL encryption anywhere on any port ' +urls: +- https://github.com/drwetter/testssl.sh) +- https://img.shields.io/github/stars/drwetter/testssl.sh) +- https://img.shields.io/github/languages/top/drwetter/testssl.sh) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/thc-hydra.yaml b/weapons/thc-hydra.yaml new file mode 100644 index 0000000..a8287b4 --- /dev/null +++ b/weapons/thc-hydra.yaml @@ -0,0 +1,15 @@ +--- +name: thc-hydra +description: 'hydra ' +urls: +- https://github.com/vanhauser-thc/thc-hydra) +- https://img.shields.io/github/stars/vanhauser-thc/thc-hydra) +- https://img.shields.io/github/languages/top/vanhauser-thc/thc-hydra) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/tiscripts.yaml b/weapons/tiscripts.yaml new file mode 100644 index 0000000..57030d8 --- /dev/null +++ b/weapons/tiscripts.yaml @@ -0,0 +1,12 @@ +--- +name: tiscripts +description: Turbo Intruder Scripts +urls: +- https://github.com/defparam/tiscripts) +- https://img.shields.io/github/stars/defparam/tiscripts) +- https://img.shields.io/github/languages/top/defparam/tiscripts) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/tplmap.yaml b/weapons/tplmap.yaml new file mode 100644 index 0000000..7435141 --- /dev/null +++ b/weapons/tplmap.yaml @@ -0,0 +1,13 @@ +--- +name: tplmap +description: Server-Side Template Injection and Code Injection Detection and Exploitation + Tool +urls: +- https://github.com/epinna/tplmap) +- https://img.shields.io/github/stars/epinna/tplmap) +- https://img.shields.io/github/languages/top/epinna/tplmap) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/turbo-intruder.yaml b/weapons/turbo-intruder.yaml new file mode 100644 index 0000000..b3f3795 --- /dev/null +++ b/weapons/turbo-intruder.yaml @@ -0,0 +1,13 @@ +--- +name: turbo-intruder +description: +urls: +- https://github.com/PortSwigger/turbo-intruder) +- https://img.shields.io/github/stars/PortSwigger/turbo-intruder) +- https://img.shields.io/github/languages/top/PortSwigger/turbo-intruder) +category: tool-addon +types: [] +platform: +- burpsuite +lang: [] +tags: [] diff --git a/weapons/uncover.yaml b/weapons/uncover.yaml new file mode 100644 index 0000000..d70ced6 --- /dev/null +++ b/weapons/uncover.yaml @@ -0,0 +1,13 @@ +--- +name: uncover +description: Quickly discover exposed hosts on the internet using multiple search + engine. +urls: +- https://github.com/projectdiscovery/uncover) +- https://img.shields.io/github/stars/projectdiscovery/uncover) +- https://img.shields.io/github/languages/top/projectdiscovery/uncover) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/unfurl.yaml b/weapons/unfurl.yaml new file mode 100644 index 0000000..6545aaf --- /dev/null +++ b/weapons/unfurl.yaml @@ -0,0 +1,15 @@ +--- +name: unfurl +description: 'Pull out bits of URLs provided on stdin ' +urls: +- https://github.com/tomnomnom/unfurl) +- https://img.shields.io/github/stars/tomnomnom/unfurl) +- https://img.shields.io/github/languages/top/tomnomnom/unfurl) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/urlgrab.yaml b/weapons/urlgrab.yaml new file mode 100644 index 0000000..16b968d --- /dev/null +++ b/weapons/urlgrab.yaml @@ -0,0 +1,16 @@ +--- +name: urlgrab +description: 'A golang utility to spider through a website searching for additional + links. ' +urls: +- https://github.com/IAmStoxe/urlgrab) +- https://img.shields.io/github/stars/IAmStoxe/urlgrab) +- https://img.shields.io/github/languages/top/IAmStoxe/urlgrab) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/urlhunter.yaml b/weapons/urlhunter.yaml new file mode 100644 index 0000000..c22ff58 --- /dev/null +++ b/weapons/urlhunter.yaml @@ -0,0 +1,13 @@ +--- +name: urlhunter +description: a recon tool that allows searching on URLs that are exposed via shortener + services +urls: +- https://github.com/utkusen/urlhunter) +- https://img.shields.io/github/stars/utkusen/urlhunter) +- https://img.shields.io/github/languages/top/utkusen/urlhunter) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/urlprobe.yaml b/weapons/urlprobe.yaml new file mode 100644 index 0000000..07a8538 --- /dev/null +++ b/weapons/urlprobe.yaml @@ -0,0 +1,15 @@ +--- +name: urlprobe +description: 'Urls status code & content length checker ' +urls: +- https://github.com/1ndianl33t/urlprobe) +- https://img.shields.io/github/stars/1ndianl33t/urlprobe) +- https://img.shields.io/github/languages/top/1ndianl33t/urlprobe) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/uro.yaml b/weapons/uro.yaml new file mode 100644 index 0000000..2c43e90 --- /dev/null +++ b/weapons/uro.yaml @@ -0,0 +1,12 @@ +--- +name: uro +description: declutters url lists for crawling/pentesting +urls: +- https://github.com/s0md3v/uro) +- https://img.shields.io/github/stars/s0md3v/uro) +- https://img.shields.io/github/languages/top/s0md3v/uro) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/waybackurls.yaml b/weapons/waybackurls.yaml new file mode 100644 index 0000000..4cad08d --- /dev/null +++ b/weapons/waybackurls.yaml @@ -0,0 +1,15 @@ +--- +name: waybackurls +description: 'Fetch all the URLs that the Wayback Machine knows about for a domain ' +urls: +- https://github.com/tomnomnom/waybackurls) +- https://img.shields.io/github/stars/tomnomnom/waybackurls) +- https://img.shields.io/github/languages/top/tomnomnom/waybackurls) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/weaponised-XSS-payloads.yaml b/weapons/weaponised-XSS-payloads.yaml new file mode 100644 index 0000000..174c3f3 --- /dev/null +++ b/weapons/weaponised-XSS-payloads.yaml @@ -0,0 +1,12 @@ +--- +name: weaponised-XSS-payloads +description: XSS payloads designed to turn alert(1) into P1 +urls: +- https://github.com/hakluke/weaponised-XSS-payloads) +- https://img.shields.io/github/stars/hakluke/weaponised-XSS-payloads) +- https://img.shields.io/github/languages/top/hakluke/weaponised-XSS-payloads) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/web_cache_poison.yaml b/weapons/web_cache_poison.yaml new file mode 100644 index 0000000..fce29a1 --- /dev/null +++ b/weapons/web_cache_poison.yaml @@ -0,0 +1,12 @@ +--- +name: web_cache_poison +description: web cache poison - Top 1 web hacking technique of 2019 +urls: +- https://github.com/fngoo/web_cache_poison) +- https://img.shields.io/github/stars/fngoo/web_cache_poison) +- https://img.shields.io/github/languages/top/fngoo/web_cache_poison) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/websocket-connection-smuggler.yaml b/weapons/websocket-connection-smuggler.yaml new file mode 100644 index 0000000..e7b47cd --- /dev/null +++ b/weapons/websocket-connection-smuggler.yaml @@ -0,0 +1,12 @@ +--- +name: websocket-connection-smuggler +description: websocket-connection-smuggler +urls: +- https://github.com/hahwul/websocket-connection-smuggler) +- https://img.shields.io/github/stars/hahwul/websocket-connection-smuggler) +- https://img.shields.io/github/languages/top/hahwul/websocket-connection-smuggler) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/wfuzz.yaml b/weapons/wfuzz.yaml new file mode 100644 index 0000000..53468e9 --- /dev/null +++ b/weapons/wfuzz.yaml @@ -0,0 +1,15 @@ +--- +name: wfuzz +description: 'Web application fuzzer ' +urls: +- https://github.com/xmendez/wfuzz) +- https://img.shields.io/github/stars/xmendez/wfuzz) +- https://img.shields.io/github/languages/top/xmendez/wfuzz) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/wprecon.yaml b/weapons/wprecon.yaml new file mode 100644 index 0000000..69c367a --- /dev/null +++ b/weapons/wprecon.yaml @@ -0,0 +1,13 @@ +--- +name: wprecon +description: Hello! Welcome. Wprecon (Wordpress Recon), is a vulnerability recognition + tool in CMS Wordpress, 100% developed in Go. +urls: +- https://github.com/blackcrw/wprecon) +- https://img.shields.io/github/stars/blackcrw/wprecon) +- https://img.shields.io/github/languages/top/blackcrw/wprecon) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/wpscan.yaml b/weapons/wpscan.yaml new file mode 100644 index 0000000..11d6eea --- /dev/null +++ b/weapons/wpscan.yaml @@ -0,0 +1,17 @@ +--- +name: wpscan +description: 'WPScan is a free, for non-commercial use, black box WordPress Vulnerability + Scanner written for security professionals and blog maintainers to test the security + of their WordPress websites. ' +urls: +- https://github.com/wpscanteam/wpscan) +- https://img.shields.io/github/stars/wpscanteam/wpscan) +- https://img.shields.io/github/languages/top/wpscanteam/wpscan) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/ws-smuggler.yaml b/weapons/ws-smuggler.yaml new file mode 100644 index 0000000..5a0f9ac --- /dev/null +++ b/weapons/ws-smuggler.yaml @@ -0,0 +1,12 @@ +--- +name: ws-smuggler +description: WebSocket Connection Smuggler +urls: +- https://github.com/hahwul/ws-smuggler) +- https://img.shields.io/github/stars/hahwul/ws-smuggler) +- https://img.shields.io/github/languages/top/hahwul/ws-smuggler) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/wssip.yaml b/weapons/wssip.yaml new file mode 100644 index 0000000..21a2df9 --- /dev/null +++ b/weapons/wssip.yaml @@ -0,0 +1,13 @@ +--- +name: wssip +description: Application for capturing, modifying and sending custom WebSocket data + from client to server and vice versa. +urls: +- https://github.com/nccgroup/wssip) +- https://img.shields.io/github/stars/nccgroup/wssip) +- https://img.shields.io/github/languages/top/nccgroup/wssip) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/wuzz.yaml b/weapons/wuzz.yaml new file mode 100644 index 0000000..a82e6ce --- /dev/null +++ b/weapons/wuzz.yaml @@ -0,0 +1,15 @@ +--- +name: wuzz +description: 'Interactive cli tool for HTTP inspection ' +urls: +- https://github.com/asciimoo/wuzz) +- https://img.shields.io/github/stars/asciimoo/wuzz) +- https://img.shields.io/github/languages/top/asciimoo/wuzz) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/x8.yaml b/weapons/x8.yaml new file mode 100644 index 0000000..9cf8dd7 --- /dev/null +++ b/weapons/x8.yaml @@ -0,0 +1,12 @@ +--- +name: x8 +description: Hidden parameters discovery suite +urls: +- https://github.com/Sh1Yo/x8) +- https://img.shields.io/github/stars/Sh1Yo/x8) +- https://img.shields.io/github/languages/top/Sh1Yo/x8) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/xsinator.com.yaml b/weapons/xsinator.com.yaml new file mode 100644 index 0000000..2d130d8 --- /dev/null +++ b/weapons/xsinator.com.yaml @@ -0,0 +1,12 @@ +--- +name: xsinator.com +description: XS-Leak Browser Test Suite +urls: +- https://github.com/RUB-NDS/xsinator.com) +- https://img.shields.io/github/stars/RUB-NDS/xsinator.com) +- https://img.shields.io/github/languages/top/RUB-NDS/xsinator.com) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/xss-cheatsheet-data.yaml b/weapons/xss-cheatsheet-data.yaml new file mode 100644 index 0000000..93d3d00 --- /dev/null +++ b/weapons/xss-cheatsheet-data.yaml @@ -0,0 +1,16 @@ +--- +name: xss-cheatsheet-data +description: 'This repository contains all the XSS cheatsheet data to allow contributions + from the community. ' +urls: +- https://github.com/PortSwigger/xss-cheatsheet-data) +- https://img.shields.io/github/stars/PortSwigger/xss-cheatsheet-data) +- https://img.shields.io/github/languages/top/PortSwigger/xss-cheatsheet-data) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/xsscrapy.yaml b/weapons/xsscrapy.yaml new file mode 100644 index 0000000..d335368 --- /dev/null +++ b/weapons/xsscrapy.yaml @@ -0,0 +1,16 @@ +--- +name: xsscrapy +description: 'XSS/SQLi spider. Give it a URL and it''ll test every link it finds for + XSS and some SQLi. ' +urls: +- https://github.com/DanMcInerney/xsscrapy) +- https://img.shields.io/github/stars/DanMcInerney/xsscrapy) +- https://img.shields.io/github/languages/top/DanMcInerney/xsscrapy) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/xsser.yaml b/weapons/xsser.yaml new file mode 100644 index 0000000..cec34fa --- /dev/null +++ b/weapons/xsser.yaml @@ -0,0 +1,16 @@ +--- +name: xsser +description: 'Cross Site "Scripter" (aka XSSer) is an automatic -framework- to detect, + exploit and report XSS vulnerabilities in web-based applications. ' +urls: +- https://github.com/epsylon/xsser) +- https://img.shields.io/github/stars/epsylon/xsser) +- https://img.shields.io/github/languages/top/epsylon/xsser) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/xssor2.yaml b/weapons/xssor2.yaml new file mode 100644 index 0000000..07d4587 --- /dev/null +++ b/weapons/xssor2.yaml @@ -0,0 +1,12 @@ +--- +name: xssor2 +description: XSS'OR - Hack with JavaScript. +urls: +- https://github.com/evilcos/xssor2) +- https://img.shields.io/github/stars/evilcos/xssor2) +- https://img.shields.io/github/languages/top/evilcos/xssor2) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/xxeserv.yaml b/weapons/xxeserv.yaml new file mode 100644 index 0000000..cb894e8 --- /dev/null +++ b/weapons/xxeserv.yaml @@ -0,0 +1,12 @@ +--- +name: xxeserv +description: A mini webserver with FTP support for XXE payloads +urls: +- https://github.com/staaldraad/xxeserv) +- https://img.shields.io/github/stars/staaldraad/xxeserv) +- https://img.shields.io/github/languages/top/staaldraad/xxeserv) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/ysoserial.net.yaml b/weapons/ysoserial.net.yaml new file mode 100644 index 0000000..774ca19 --- /dev/null +++ b/weapons/ysoserial.net.yaml @@ -0,0 +1,15 @@ +--- +name: ysoserial.net +description: 'Deserialization payload generator for a variety of .NET formatters ' +urls: +- https://github.com/pwntester/ysoserial.net) +- https://img.shields.io/github/stars/pwntester/ysoserial.net) +- https://img.shields.io/github/languages/top/pwntester/ysoserial.net) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/ysoserial.yaml b/weapons/ysoserial.yaml new file mode 100644 index 0000000..7c3250e --- /dev/null +++ b/weapons/ysoserial.yaml @@ -0,0 +1,16 @@ +--- +name: ysoserial +description: 'A proof-of-concept tool for generating payloads that exploit unsafe + Java object deserialization. ' +urls: +- https://github.com/frohoff/ysoserial) +- https://img.shields.io/github/stars/frohoff/ysoserial) +- https://img.shields.io/github/languages/top/frohoff/ysoserial) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/zap-cli.yaml b/weapons/zap-cli.yaml new file mode 100644 index 0000000..657cc6e --- /dev/null +++ b/weapons/zap-cli.yaml @@ -0,0 +1,15 @@ +--- +name: zap-cli +description: 'A simple tool for interacting with OWASP ZAP from the commandline. ' +urls: +- https://github.com/Grunny/zap-cli) +- https://img.shields.io/github/stars/Grunny/zap-cli) +- https://img.shields.io/github/languages/top/Grunny/zap-cli) +category: tool +types: [] +platform: +- linux +- macos +- windows +lang: [] +tags: [] diff --git a/weapons/zap-hud.yaml b/weapons/zap-hud.yaml new file mode 100644 index 0000000..39576e6 --- /dev/null +++ b/weapons/zap-hud.yaml @@ -0,0 +1,13 @@ +--- +name: zap-hud +description: +urls: +- https://github.com/zaproxy/zap-hud) +- https://img.shields.io/github/stars/zaproxy/zap-hud) +- https://img.shields.io/github/languages/top/zaproxy/zap-hud) +category: tool-addon +types: [] +platform: +- zap +lang: [] +tags: [] diff --git a/weapons/zaproxy.yaml b/weapons/zaproxy.yaml new file mode 100644 index 0000000..885ebc9 --- /dev/null +++ b/weapons/zaproxy.yaml @@ -0,0 +1,12 @@ +--- +name: zaproxy +description: The OWASP ZAP core project +urls: +- https://github.com/zaproxy/zaproxy) +- https://img.shields.io/github/stars/zaproxy/zaproxy) +- https://img.shields.io/github/languages/top/zaproxy/zaproxy) +category: tool +types: [] +platform: [] +lang: [] +tags: [] diff --git a/weapons/zdns.yaml b/weapons/zdns.yaml new file mode 100644 index 0000000..f440e5c --- /dev/null +++ b/weapons/zdns.yaml @@ -0,0 +1,12 @@ +--- +name: zdns +description: Fast CLI DNS Lookup Tool +urls: +- https://github.com/zmap/zdns) +- https://img.shields.io/github/stars/zmap/zdns) +- https://img.shields.io/github/languages/top/zmap/zdns) +category: tool +types: [] +platform: [] +lang: [] +tags: []