Awesome Bug Bounty Tools
Section: SQL Injection · Automated NoSQL database enumeration and web application exploitation tool.
Entry
Appears in 4 awesome lists
Automated NoSQL database enumeration and web application exploitation tool.
Section: SQL Injection · Automated NoSQL database enumeration and web application exploitation tool.
Section: Tools · Automated NoSQL database enumeration and web application exploitation tool.
Section: Web Security Testing · Automated NoSQL database enumeration and exploitation.
Section: Web injection tools · Automatic NoSQL injection and database takeover tool.
Shodan is a search engine that lets users search for various types of servers connected to the internet using a variety of filters. Some have also described it as a search engine of service banners, which are metadata that the server sends back to the client.
A Python tool used for intercepting, viewing and modifying network traffic. Invaluable in troubleshooting certain problems. (Source Code) MIT Python
Automated All-in-One OS command injection and exploitation tool by @commixproject.
TCP port scanner, spews SYN packets asynchronously, scanning entire Internet in under 5 minutes..
Burp Suite is an integrated platform for performing security testing of web applications by portswigger.
XSStrike is a program which can fuzz and bruteforce parameters for XSS. It can also detect and bypass WAFs by @s0md3v.
Spyse is an OSINT search engine that provides fresh data about the entire web. All the data is stored in its own DB for instant access and interconnected with each other for flexible search. Provided data: IPv4 hosts, sub/domains/whois, ports/banners/protocols, technologies, OS, AS, wide SSL/TLS…