cdhpofaebcgpabjpdfgfddjhfaloflkj
Track the chunks fetched over the Network Capture the chunks fetched over the Network and copy them to your .env.chunks.local file
CyberPost Lab
A fully offline, browser-based HTTP request testing tool for cybersecurity researchers CyberPost Lab - Comprehensive Web Testing Tool for Security Researchers Brief Description CyberPost Lab is a specialized Chrome extension that enables security researchers, penetration testers, and information security specialists to conduct comprehensive web tests completely offline. The tool combines an advanced payload generator, encoding/decoding utilities, and an integrated HTTP request laboratory, all within a modern, user-friendly interface. Key Features Integrated HTTP Request Laboratory - Send and receive HTTP/HTTPS requests using any method (GET, POST, PUT, DELETE, and more) - Full support for custom parameters and headers - View responses in formatted JSON, raw text, or HTML preview - Create mock requests for testing without an internet connection - Automatic session persistence between browser sessions Encoding and Decoding Tools - Easily encode and decode Base64 - URL encoding and decoding - HTML entity conversion and reversal - JWT decoding with structured content display Specialized Payload Generator A comprehensive collection of ready-to-use test payloads for immediate security testing: - XSS (Cross-Site Scripting) - SQL Injection - Command Injection - LFI (Local File Inclusion) - SSRF (Server-Side Request Forgery) - RCE (Remote Code Execution) - SSTI (Server-Side Template Injection) - XXE (XML External Entity) - CRLF Injection - JSON Injection - Host Header Injection - Windows LFI Who Is This Tool For ? CyberPost Lab targets professionals in the cybersecurity field, including: - Ethical hackers and security researchers - Web developers concerned with application security - Information security students and practitioners - Security incident response teams Additional Features - Modern user interface inspired by professional cybersecurity tools - Smooth and responsive user experience - Works completely offline without requiring an internet connection - Maintains data privacy - all operations occur locally on your device - Compatible with the latest versions of Chrome browser Developed by the Ghostbyte® Team Created by a team specialized in information security with a focus on providing practical tools for security professionals. CyberPost Lab - Your Essential Web Security Testing Toolkit. have fun
CyberInject
Professional security testing toolkit for ethical hackers and penetration testers CyberInject is a professional security testing toolkit designed for authorized penetration testers and ethical hackers. Payload Collections - XSS Payloads - 15 cross-site scripting test vectors - SQL Injection - 15 database injection payloads - SSRF - 12 server-side request forgery tests - LFI - 12 local file inclusion vectors - Other Vulnerabilities - 15 additional security tests including XXE, SSTI, Command Injection, and Log4Shell Enhanced Tools - Encoding/Decoding Tools - URL, Base64, HTML Entity, and Hex encoding/decoding - Payload Variation Generator - Automatically generate multiple variations of payloads (case changes, encoding, obfuscation) - Character Counter - Count characters, words, and lines in your payloads - Custom Payloads - Add, organize, and permanently save your own custom injection payloads Smart Features - Real-time Search - Instantly search through all payloads, tools, and references across all categories - Session History- Automatic tracking of all copied payloads with timestamps for audit trails - One-click Copying - Quick clipboard integration with visual feedback - Reference Library - Quick access to HTTP status codes, common ports, OWASP Top 10, and security resources - Intuitive Tabbed Interface - Organized by vulnerability type with smooth navigation - Keyboard Shortcuts - Press 1-8 to quickly switch between categories - Professional Design - Clean, security-focused interface with smooth scrolling fade effects - Smart Search Bar - Filter payloads in real-time as you type - Persistent Storage - All custom payloads and history saved permanently across browser sessions - Instant History Updates - See your testing history update immediately as you work PERFECT FOR: - Security professionals and penetration testers - Bug bounty hunters conducting authorized research - Security training and educational purposes - Authorized vulnerability assessments - Red team operations and security audits - Researchers who need to organize and track custom payloads - Teams who need consistent payload references This extension provides quick access to common security testing payloads without requiring external tools or references. All features work offline with no network requests or data collection. Custom payloads and history are saved permanently using browser storage (chrome.storage API) and will persist across extension sessions. The extension includes: - 69+ pre-loaded security testing payloads - 6 encoding/decoding tools - Comprehensive reference documentation - Unlimited custom payload storage - Complete session history tracking - Real-time search across all content This tool is intended solely for authorized security testing. Users must obtain explicit written permission before testing any systems and comply with all applicable laws. Unauthorized use is prohibited and may be illegal in your jurisdiction. Want to explore the source code or contribute? Check out the project on GitHub: https://github.com/CyberNilsen/CyberInject Version 1.3.0 - Now with enhanced search, history tracking, encoding tools, and improved user experience!
Network explorer
A DevTools extension to interpret network requests in real time within a friendly way. A DevTools extension to interpret network requests in real time within a friendly way. Main functions: 1. Network requests could be manually / automatically loaded into the extension. 2. Users could define custom filters to load requests they want. 3. It could display these requests in a table. 4. It could transform headers and contents of requests/responses into JSON object and display them as tree-like structures. Currently version only supports pure JSON requests and dwr request. 5. In these tree-like structures, users could copy, download and search nodes. 6. Jsonlizable strings could be detected automatically and show up in popups.
Hunter Search
Otimize buscas para pentest e bug bounty com dorks automáticos. Hunter Search – Dorks Inteligentes para Pentest e Bug Bounty Otimize suas buscas de segurança! O Hunter Search é a extensão definitiva para profissionais de pentest, bug bounty hunters e entusiastas de segurança que desejam encontrar informações sensíveis, vulnerabilidades e exposições públicas de forma rápida, prática e inteligente. Principais Funcionalidades - Montagem Avançada de Dorks: Combine palavras-chave, múltiplos sites, operadores Google e dorks prontos (IDOR, XSS, SQLi, AWS, arquivos sensíveis, leaks, painéis admin e muito mais) em uma interface intuitiva. - Pré-visualização em Tempo Real: Veja como ficará sua query antes de buscar, garantindo precisão e controle total. - Busca Multi-Plataforma: Escolha entre Google, Bing ou DuckDuckGo para ampliar suas possibilidades de descoberta. - Histórico e Favoritos: Salve e reutilize suas queries mais usadas. Nunca mais perca aquele dork perfeito! - Botões Rápidos: Copie, limpe ou favorite suas buscas com apenas um clique. - Modo Escuro/Claro Automático: Interface moderna, responsiva e confortável para qualquer hora do dia. - Tooltips e Ajuda: Dicas rápidas em cada campo para facilitar o uso, mesmo para quem está começando. Exemplos de uso - Encontrar vazamentos de chaves AWS em repositórios públicos. - Buscar arquivos sensíveis (.env, config, credentials) em sites e domínios específicos. - Descobrir endpoints de administração, painéis e dashboards expostos. - Pesquisar por vulnerabilidades comuns (IDOR, XSS, SQLi) em qualquer site. - Montar dorks customizados para investigações avançadas. Por que usar o Hunter Search? - Produtividade: Economize tempo montando queries complexas com poucos cliques. - Personalização: Adapte a busca ao seu objetivo, seja para bug bounty, CTF, OSINT ou auditoria. - Praticidade: Tudo em um só lugar, sem precisar decorar dorks ou operadores. Hunter Search Otimize suas buscas. Encontre vulnerabilidades. Eleve seu bug bounty!