This repo includes the different exploit sources of finding services from the recon or port scan
- Elastic Search:
https://tamimhasan404.medium.com/elasticsearch-a-easy-win-for-bug-bounty-hunters-how-to-find-and-report-ddd900395bcb
- Jira VUln scanner
https://github.com/MayankPandey01/Jira-Lens
- Jenkins server vuln
https://github.com/gquere/pwn_jenkins
- Salesforce recon and exploit
https://github.com/reconstation/sret
- JWT TOKEN ATTACK
https://github.com/ticarpi/jwt_tool
- Java RMI Vulnerability Scanner
https://github.com/qtc-de/remote-method-guesser
- Firebase exploit
https://github.com/0xSojalSec/Firebase_Exploit
- Google Maps API Scanner
https://github.com/ozguralp/gmapsapiscanner
- Exploi Put Method
https://hackerone.com/reports/545136
Static Code Analysis for finding Vuln like SQL injection, SSTI, XXE, LFI, XSS and so on
https://github.com/CoolerVoid/codewarrior