Skip to content

Entry

wfuzz

Appears in 5 awesome lists

was created to facilitate the task in web applications assessments and it is based on a simple concept: it replaces any reference to the FUZZ keyword by the value of a given payload.

Open github.comxmendez/wfuzz

Found in these lists

Awesome Bug Bounty Tools

Section: Fuzzing · Web application fuzzer

FreshScore 89

SOCIAL MEDIA

Section: Content Discovery & Fuzzing · Web application fuzzer for brute-forcing.

FreshScore 86

Awesome Termux Hacking

Section: General · Web application fuzzer.

StaleScore 47

Awesome Web Security

Section: Fuzzing · Web application bruteforcer by @xmendez.

FreshScore 87

Table of Contents

Section: Security Tools · was created to facilitate the task in web applications assessments and it is based on a simple concept: it replaces any reference to the FUZZ keyword by the value of a given payload.

SlowScore 61

SecLists

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more..

In 14 listsDetails

sqlmap

Tamper scripts in SQLMap obfuscate payloads which might evade some WAFs.

In 10 listsDetails

mitmproxy

An interactive HTTPS proxy that allows inspection, modification, and debugging of network traffic, useful for video streaming analysis.

In 10 listsDetails

Volatility

Python based memory extraction and analysis framework.

In 8 listsDetails

gobuster

Lean multipurpose brute force search/fuzzing tool for Web (and DNS) reconnaissance.

In 7 listsDetails

Sublist3r

Sublist3r is a multi-threaded sub-domain enumeration tool for penetration testers by @aboul3la.

In 7 listsDetails

commix

Automated All-in-One OS command injection and exploitation tool by @commixproject.

In 7 listsDetails

masscan

TCP port scanner, spews SYN packets asynchronously, scanning entire Internet in under 5 minutes..

In 7 listsDetails