Skip to content
View Zeeshanafridai's full-sized avatar
:octocat:
:octocat:

Block or report Zeeshanafridai

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Popular repositories Loading

  1. Java_script_endpoint_extractor Java_script_endpoint_extractor Public

    Extracts hidden API endpoints from JavaScript files and maps them to full URLs for testing. Ideal for bug bounty hunters, red teamers, and anyone doing JS recon at scale.

    Shell

  2. CORScanner CORScanner Public

    Automated CORS misconfiguration scanner with PoC exploit generator, bug bounty & pentesting

    Python

  3. jwt-attack-suite jwt-attack-suite Public

    A comprehensive JWT attack CLI covering every major vulnerability class — from alg:none bypass to RS256→HS256 algorithm confusion, HMAC secret bruteforce, kid header injection (SQLi + path traversa…

    Python

  4. SQLI-Fingerprinter SQLI-Fingerprinter Public

    Deep SQLi scanner — error/union/boolean/time/OOB, 15 WAF bypasses, 8 DB fingerprints, zero dependencies

    Python

  5. OAUTH-Flow-Analyzer OAUTH-Flow-Analyzer Public

    OAuth 2.0/OIDC attack suite — state CSRF, redirect_uri bypass (22 variants), PKCE downgrade, scope escalation, token leakage, OIDC flaws

    Python

  6. SSRF-Callback-Server SSRF-Callback-Server Public

    Self-hosted Burp Collaborator alternative — DNS+HTTP+HTTPS+SMTP listeners, browser dashboard, cloud metadata detection, 46 SSRF payloads

    Python