awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Back to whitel1st/docem

Projects sharing features with Docem

30 open-source projects similar to whitel1st/docem, ranked by shared indexed features. Tags may describe platforms or build tools rather than the same primary purpose. Check each project’s use case, license, and deployment requirements before treating it as a replacement.

  • danmcinerney/xsscrapyDanMcInerney avatar

    DanMcInerney/xsscrapy

    1,742View on GitHub↗

    XSS spider - 66/66 wavsep XSS detected

    Python
    View on GitHub↗1,742
  • dwisiswant0/findom-xssdwisiswant0 avatar

    dwisiswant0/findom-xss

    863View on GitHub↗

    A fast DOM based XSS vulnerability scanner with simplicity.

    Shell
    View on GitHub↗863
  • hahwul/dalfoxhahwul avatar

    hahwul/dalfox

    4,846View on GitHub↗

    Dalfox is an automated web application security tool specifically designed for discovering and verifying cross-site scripting vulnerabilities. It functions as an XSS vulnerability scanner that analyzes HTTP parameters and DOM structures to identify reflected, stored, and blind injection points. The project distinguishes itself by providing a Model Context Protocol server and a REST API, allowing artificial intelligence agents and remote interfaces to trigger and manage security scans programmatically. It utilizes a payload mutation engine and fingerprinting strategies to execute WAF evasion t

    Gobugbountybugbounty-toolcicd-pipeline
    View on GitHub↗4,846
  • allyomalley/dnsobserverA

    allyomalley/dnsobserver

    0View on GitHub↗
    View on GitHub↗0
  • asciimoo/wuzzasciimoo avatar

    asciimoo/wuzz

    10,711View on GitHub↗

    Wuzz is an interactive command line HTTP client and request inspector designed for capturing, reviewing, and analyzing outgoing network calls and their payloads. It functions as a terminal-based tool for debugging API issues and testing web endpoints. The tool provides specialized filtering for response bodies, using regular expressions and format-specific query syntaxes tailored for JSON and HTML data. It allows for the persistence of captured requests and responses to disk to facilitate the reproduction of network issues and offline analysis. User settings and default request behaviors are

    Goclicurlgo
    View on GitHub↗10,711

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • assetnote/wordlistsassetnote avatar

    assetnote/wordlists

    1,611View on GitHub↗
    CSSbruteforcebruteforce-wordlistcontent-discovery
    View on GitHub↗1,611
  • asaiken/dom-based-xss-finderAsaiKen avatar

    AsaiKen/dom-based-xss-finder

    76View on GitHub↗

    Chrome extension that finds DOM based XSS vulnerabilities

    JavaScript
    View on GitHub↗76
  • beefproject/beefbeefproject avatar

    beefproject/beef

    10,728View on GitHub↗

    BeEF is a modular security testing environment designed for browser exploitation and web application auditing. It functions as a platform for security professionals to evaluate client-side defenses by injecting persistent scripts into web browsers, establishing a bidirectional communication channel for remote command execution and data exfiltration. The framework distinguishes itself through its ability to use compromised browser sessions as proxies to conduct internal network reconnaissance, effectively bypassing perimeter security controls. It utilizes an event-driven control interface and

    JavaScript
    View on GitHub↗10,728
  • bishopfox/gadgetprobeBishopFox avatar

    BishopFox/GadgetProbe

    616View on GitHub↗

    Probe endpoints consuming Java serialized objects to identify classes, libraries, and library versions on remote Java classpaths.

    Java
    View on GitHub↗616
  • bitthebyte/bitblinderBitTheByte avatar

    BitTheByte/BitBlinder

    123View on GitHub↗

    BurpSuite extension to inject custom cross-site scripting payloads on every form/request submitted to detect blind XSS vulnerabilities

    Python
    View on GitHub↗123
  • bountystrike/emissaryB

    BountyStrike/Emissary

    0View on GitHub↗
    View on GitHub↗0
  • bugbountyforum/xss-radarbugbountyforum avatar

    bugbountyforum/XSS-Radar

    334View on GitHub↗

    Cross-site scripting discovery A Chrome extension for fast and easy XSS fuzzing

    JavaScript
    View on GitHub↗334
  • chenjj/corscannerchenjj avatar

    chenjj/CORScanner

    1,160View on GitHub↗

    🎯 Fast CORS misconfiguration vulnerabilities scanner

    Pythoncorscors-misconfigurationscors-policy
    View on GitHub↗1,160
  • damian89/extended-xss-searchDamian89 avatar

    Damian89/extended-xss-search

    187View on GitHub↗

    A better version of my xssfinder tool - scans for different types of xss on a list of urls.

    Python
    View on GitHub↗187
  • danielmiessler/seclistsdanielmiessler avatar

    danielmiessler/SecLists

    71,596View on GitHub↗

    SecLists is a centralized library of security assessment data designed to support vulnerability discovery and penetration testing. It functions as a comprehensive repository of wordlists, payloads, and testing methodologies used to audit software, firmware, and internet-connected hardware for technical vulnerabilities. The project distinguishes itself through a standardized taxonomy and a language-agnostic data format, which allows security tools to predictably ingest and utilize its assets regardless of the underlying programming environment. By decoupling raw testing data from execution log

    PHP
    View on GitHub↗71,596
  • damianrusinek/zip-bombD

    damianrusinek/zip-bomb

    0View on GitHub↗
    View on GitHub↗0
  • aws-samples/automated-security-helperaws-samples avatar

    aws-samples/automated-security-helper

    657View on GitHub↗

    ASH is an extensible, open source SAST, SCA, and IaC security scanner orchestration engine.

    Python
    View on GitHub↗657
  • den1al/jsshellDen1al avatar

    Den1al/JSShell

    366View on GitHub↗

    An interactive multi-user web JS shell

    Python
    View on GitHub↗366
  • dwisiswant0/cf-checkD

    dwisiswant0/cf-check

    0View on GitHub↗
    View on GitHub↗0
  • arturss7/tuktukA

    ArturSS7/TukTuk

    0View on GitHub↗
    View on GitHub↗0
  • dxa4481/xssoauthpersistencedxa4481 avatar

    dxa4481/XSSOauthPersistence

    78View on GitHub↗

    Maintaining account persistence via XSS and Oauth

    JavaScript
    View on GitHub↗78
  • egebalci/xss-flareE

    EgeBalci/xss-flare

    0View on GitHub↗
    View on GitHub↗0
  • epsylon/xsserepsylon avatar

    epsylon/xsser

    1,448View on GitHub↗

    Cross Site "Scripter" (aka XSSer) is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications.

    Python
    View on GitHub↗1,448
  • evilcos/xssor2evilcos avatar

    evilcos/xssor2

    2,222View on GitHub↗

    XSS'OR - Hack with JavaScript.

    JavaScript
    View on GitHub↗2,222
  • fcavallarin/domdigfcavallarin avatar

    fcavallarin/domdig

    419View on GitHub↗

    DOM XSS scanner for Single Page Applications

    JavaScript
    View on GitHub↗419
  • gchq/cyberchefgchq avatar

    gchq/CyberChef

    35,120View on GitHub↗

    CyberChef is a web-based application designed for performing complex data encoding, decoding, encryption, and analysis tasks. It provides a visual interface where users construct data transformation pipelines by chaining modular operations together, allowing raw input to be processed into a desired output format entirely within the local browser environment. The tool functions as a client-side cryptographic workbench, ensuring that all data processing logic remains local to the user's machine to maintain privacy and eliminate server-side overhead. By utilizing functional pipeline composition

    JavaScriptcompressiondata-analysisdata-manipulation
    View on GitHub↗35,120
  • google/security-crawl-mazeG

    google/security-crawl-maze

    0View on GitHub↗
    View on GitHub↗0
  • gwen001/github-regexpG

    gwen001/github-regexp

    0View on GitHub↗
    View on GitHub↗0
  • gwen001/pentest-toolsgwen001 avatar

    gwen001/pentest-tools

    3,303View on GitHub↗

    A collection of custom security tools for quick needs.

    Pythonauditbashbugbounty
    View on GitHub↗3,303
  • aemkei/jsfuckaemkei avatar

    aemkei/jsfuck

    8,596View on GitHub↗

    jsfuck is an esoteric programming language and JavaScript source obfuscator. It functions as a code encoder that transforms standard JavaScript source code into a functional equivalent composed of a minimal character set. The project restricts its source code to six specific characters to hide logic and bypass security filters that block standard alphanumeric characters. It achieves this by using type coercion to derive symbols and accessing internal language objects through prototype manipulation. The system enables arbitrary JavaScript execution by converting strings into executable functi

    JavaScript
    View on GitHub↗8,596