axiom
reconftw
Our great sponsors
axiom | reconftw | |
---|---|---|
3 | 3 | |
3,817 | 5,231 | |
- | - | |
7.0 | 9.3 | |
11 days ago | 6 days ago | |
Shell | Shell | |
MIT License | MIT License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
axiom
-
How do real hunters handle with rate-limit?
- Bypass it with IP rotation. In most cases that works. There are things like AWS API gateway that can be useful for this through fireprox. There is also axiom or hakscale
-
Axiom: Just-in-time dynamic infra for offensive security operations
https://github.com/pry0cc/axiom/blob/master/interact/axiom-c...
They also recommend only installing it in an "VPS environment"(Virtual Private Serer) because it overwrites your .bashrc or .zshrc files depending on your preferred Shell.
-
Help finding tools
Hello, I was wondering if anyone can help me find any tools like https://github.com/pry0cc/axiom that do the same, spin up a bunch of vms and have an nmap scan from source?
reconftw
- Automated recognition frameworks?
-
I made a CLI that streamlines Ethical Hacking workflow
Checkout ReconFTW
-
Tools for subdomain brute forcing
reconFTW = https://github.com/six2dez/reconftw
What are some alternatives?
fricas - Official repository of the FriCAS computer algebra system
LazyRecon - An automated approach to performing recon for bug bounty hunting and penetration testing.
ffmpeg_batch - FFmpeg Batch AV Converter
Sn1per - Attack Surface Management Platform
AV-converter - A web app to convert an audio/video file to another format. Client side conversion means that your file does not get uploaded to a server. You can also download YouTube videos at the /yt endpoint.
Resources-for-Beginner-Bug-Bounty-Hunters - A list of resources for those interested in getting started in bug bounties
kenzer - automated web assets enumeration & scanning [DEPRECATED]
Nuclei-Template-CVE-2022-1388-BIG-IP-iControl-REST-Exposed - This vulnerability may allow an unauthenticated attacker with network access to the BIG-IP system through the management port and/or self IP addresses to execute arbitrary system commands, create or delete files, or disable services. There is no data plane exposure; this is a control plane issue only.
Sudomy - Sudomy is a subdomain enumeration tool to collect subdomains and analyzing domains performing automated reconnaissance (recon) for bug hunting / pentesting
Goohak - Automatically Launch Google Hacking Queries Against A Target Domain
NotEnoughAV1Encodes - GUI for AV1 (aomenc, rav1e & svt-av1)
ReconPi - ReconPi - A lightweight recon tool that performs extensive scanning with the latest tools.