xurlfind3r
gau
xurlfind3r | gau | |
---|---|---|
1 | 6 | |
524 | 3,557 | |
1.3% | - | |
8.0 | 6.0 | |
3 months ago | 15 days ago | |
Go | Go | |
MIT License | MIT License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
xurlfind3r
gau
-
Pentesting Tools I Use Everyday
Learn more about gau here: https://github.com/lc/gau
- Please Help
- 2 open source tools to find subdomains (ft. HakLuke)
-
What should I look for when checking wayback urls when performing recon and analysis?
I see people use tools like gau and waybackurls when doing recon and analysis before a web app pentest, I am a complete beginner and most tutorials just explain how to install these tools but not why we want to use them or where we want to get using them.
-
How to search URLs exposed by Shortener services
Great :) Would be a great addition to tools like gau or waybackurls for people with an API key!
- Google pics and videos of hot ebony wife
What are some alternatives?
uncover - Quickly discover exposed hosts on the internet using multiple search engines.
waybackurls - Fetch all the URLs that the Wayback Machine knows about for a domain
SatIntel - SatIntel is an OSINT tool for Satellites 🛰. Extract satellite telemetry, receive orbital predictions, and parse TLEs 🔭
hakrawler - Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application
TeamsUserEnum - User enumeration with Microsoft Teams API
goo.gl_abuse
goSCF - Session Cookie Finder
trivy - Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
gogetcrawl - Extract web archive data using Wayback Machine and Common Crawl
john - John the Ripper jumbo - advanced offline password cracker, which supports hundreds of hash and cipher types, and runs on many operating systems, CPUs, GPUs, and even some FPGAs
ghost - Use ghost for passive recon: get the Wayback Machine history for a URL, search for term(s) or regular expression matches, save all archived links, save an archived robots.txt and sitemap.xml, run a whois lookup, and get IP addresses, all without touching the target.
dirsearch - Web path scanner