awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
Back to nefcore/crlfsuite

Projects sharing features with CRLFsuite

24 open-source projects similar to nefcore/crlfsuite, ranked by shared indexed features. Tags may describe platforms or build tools rather than the same primary purpose. Check each project’s use case, license, and deployment requirements before treating it as a replacement.

  • daffainfo/allaboutbugbountydaffainfo avatar

    daffainfo/AllAboutBugBounty

    6,644View on GitHub↗

    AllAboutBugBounty is a curated collection of bug bounty techniques and payloads for web application security testing. It serves as a reference resource covering common web vulnerabilities and exploitation methods for security researchers, providing a structured approach to identifying and exploiting web application security flaws in bug bounty programs. The repository covers a wide range of attack categories including authentication bypass, cross-site scripting injection, server-side request forgery, web cache poisoning, and business logic abuse. It includes techniques for bypassing access co

    bugbugbountybugbountytips
    View on GitHub↗6,644
  • bountystrike/injectusBountyStrike avatar

    BountyStrike/Injectus

    113View on GitHub↗

    CRLF and open redirect fuzzer

    Python
    View on GitHub↗113
  • chenjj/corscannerchenjj avatar

    chenjj/CORScanner

    1,160View on GitHub↗

    🎯 Fast CORS misconfiguration vulnerabilities scanner

    Pythoncorscors-misconfigurationscors-policy
    View on GitHub↗1,160
  • danmcinerney/xsscrapyDanMcInerney avatar

    DanMcInerney/xsscrapy

    1,742View on GitHub↗

    XSS spider - 66/66 wavsep XSS detected

    Python
    View on GitHub↗1,742
  • dwisiswant0/crlfuzzdwisiswant0 avatar

    dwisiswant0/crlfuzz

    1,543View on GitHub↗

    A fast tool to scan CRLF vulnerability written in Go

    Go
    View on GitHub↗1,543

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • dwisiswant0/findom-xssdwisiswant0 avatar

    dwisiswant0/findom-xss

    863View on GitHub↗

    A fast DOM based XSS vulnerability scanner with simplicity.

    Shell
    View on GitHub↗863
  • hacktricks-wiki/hacktricksHackTricks-wiki avatar

    HackTricks-wiki/hacktricks

    11,700View on GitHub↗

    HackTricks is a comprehensive cybersecurity knowledge base and wiki designed to support ethical hacking, penetration testing, and infrastructure security auditing. It serves as a structured reference guide for security professionals, providing detailed documentation on common vulnerabilities, attack vectors, and remediation strategies across diverse software and network environments. The project distinguishes itself by offering actionable methodologies for identifying and analyzing security flaws. It functions as a centralized repository for security research, enabling practitioners to study

    CSShackinghacktrickspeass
    View on GitHub↗11,700
  • hahwul/dalfoxhahwul avatar

    hahwul/dalfox

    4,846View on GitHub↗

    Dalfox is an automated web application security tool specifically designed for discovering and verifying cross-site scripting vulnerabilities. It functions as an XSS vulnerability scanner that analyzes HTTP parameters and DOM structures to identify reflected, stored, and blind injection points. The project distinguishes itself by providing a Model Context Protocol server and a REST API, allowing artificial intelligence agents and remote interfaces to trigger and manage security scans programmatically. It utilizes a payload mutation engine and fingerprinting strategies to execute WAF evasion t

    Gobugbountybugbounty-toolcicd-pipeline
    View on GitHub↗4,846
  • hahwul/jwt-hackhahwul avatar

    hahwul/jwt-hack

    998View on GitHub↗

    JSON Web Token Hack Toolkit

    Rust
    View on GitHub↗998
  • hansmach1ne/lfimaphansmach1ne avatar

    hansmach1ne/lfimap

    334View on GitHub↗

    Local File Inclusion discovery and exploitation tool

    Python
    View on GitHub↗334
  • michaelstott/crlf-injection-scannerMichaelStott avatar

    MichaelStott/CRLF-Injection-Scanner

    163View on GitHub↗

    Command line tool for testing CRLF injection on a list of domains.

    Python
    View on GitHub↗163
  • michenriksen/aquatonemichenriksen avatar

    michenriksen/aquatone

    5,940View on GitHub↗

    Aquatone is a web screenshot reconnaissance tool that captures full-page screenshots of web services discovered during network reconnaissance and groups them by visual similarity. It scans a list of hosts or domains for HTTP and HTTPS services on common and custom ports to find responsive web endpoints, then takes full-page screenshots of those pages for quick review. The tool accepts piped input from other tools and extracts URLs, domains, and IP addresses using regex pattern matching, making it pipeline-friendly for integration into existing workflows. It can also read XML output from Nmap

    Go
    View on GitHub↗5,940
  • mzfr/liffymzfr avatar

    mzfr/liffy

    968View on GitHub↗

    Local file inclusion exploitation tool

    Python
    View on GitHub↗968
  • z-bool/venom-jwtZ

    z-bool/Venom-JWT

    0View on GitHub↗
    View on GitHub↗0
  • beefproject/beefbeefproject avatar

    beefproject/beef

    10,728View on GitHub↗

    BeEF is a modular security testing environment designed for browser exploitation and web application auditing. It functions as a platform for security professionals to evaluate client-side defenses by injecting persistent scripts into web browsers, establishing a bidirectional communication channel for remote command execution and data exfiltration. The framework distinguishes itself through its ability to use compromised browser sessions as proxies to conduct internal network reconnaissance, effectively bypassing perimeter security controls. It utilizes an event-driven control interface and

    JavaScript
    View on GitHub↗10,728
  • stark0de/nginxpwnerstark0de avatar

    stark0de/nginxpwner

    1,599View on GitHub↗

    Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.

    Python
    View on GitHub↗1,599
  • swisskyrepo/payloadsallthethingsswisskyrepo avatar

    swisskyrepo/PayloadsAllTheThings

    78,434View on GitHub↗

    This project is a comprehensive, community-sourced knowledge base designed for security professionals and researchers. It functions as a centralized repository of offensive security techniques, providing a structured collection of exploit payloads, attack vectors, and methodologies for conducting vulnerability assessments and penetration testing. The repository distinguishes itself through a cross-platform payload taxonomy that categorizes exploitation methods by vulnerability type and target environment, enabling rapid lookup during security assessments. It maintains high standards of data i

    Pythonbountybugbountybypass
    View on GitHub↗78,434
  • swisskyrepo/ssrfmapswisskyrepo avatar

    swisskyrepo/SSRFmap

    3,571View on GitHub↗

    Automatic SSRF fuzzer and exploitation tool

    Python
    View on GitHub↗3,571
  • tas9er/ueditorgetshellT

    Tas9er/UEditorGetShell

    0View on GitHub↗
    View on GitHub↗0
  • teknogeek/ssrf-sheriffteknogeek avatar

    teknogeek/ssrf-sheriff

    338View on GitHub↗

    A simple SSRF-testing sheriff written in Go

    Go
    View on GitHub↗338
  • v8blink/chromium-based-xss-taint-trackingv8blink avatar

    v8blink/Chromium-based-XSS-Taint-Tracking

    127View on GitHub↗

    Cyclops 是一款具有 XSS 检测功能的浏览器

    View on GitHub↗127
  • vladko312/sstimapvladko312 avatar

    vladko312/SSTImap

    1,538View on GitHub↗

    Automatic SSTI detection tool with interactive interface

    Python
    View on GitHub↗1,538
  • whitel1st/docemwhitel1st avatar

    whitel1st/docem

    683View on GitHub↗

    A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)

    Python
    View on GitHub↗683
  • six2dez/reconftwsix2dez avatar

    six2dez/reconftw

    7,226View on GitHub↗

    reconftw is an attack surface management framework and reconnaissance workflow orchestrator designed to automate the discovery, mapping, and monitoring of external digital assets. It operates as a modular tool-chain pipeline that coordinates a sequence of security tools to perform intelligence gathering and vulnerability scanning. The project distinguishes itself through a cloud-native deployment model that parallelizes scanning workloads across a fleet of remote VPS instances to bypass local resource constraints. It utilizes container-based environment isolation to ensure consistent executio

    Shellbug-bountybugbountybugbounty-tool
    View on GitHub↗7,226