Category: WebApp PenTest

PyLazyS3

PyLazyS3: Enumerate AWS S3 buckets using different permutations

PyLazyS3 A Python port of the original lazys3 tool to enumerate AWS S3 buckets using different permutations, originally created by @NahamSec. It utilizes the asyncio and aiohttp libraries to handle multiple high concurrency requests with great efficiency. Installation git clone https://github.com/Den1al/PyLazyS3.git...

SSRFmap

SSRFmap: Server Side Request Forgery services enumeration tool

SSRFmap A simple service scanner for Server Side Request Forgery vulnerabilities. Installation git clone https://github.com/dreadlocked/SSRFmap.git cd SSRFmap bundle install Use   Usage examples Request a single resource via GET request ruby ssrfmap.rb –url http://www.example.com/controller?url=_SSRF_ –target http://169.254.169.254/...