Rockyou for web fuzzing
-
Updated
Sep 22, 2026 - Go
Rockyou for web fuzzing
Wordlist for web fuzzing, made from a variety of reliable sources including: result from my pentests, git.rip, ChatGPT, Lex, nuclei templates, web-scanners, seclist, bo0m, and more.
Promocode wordlist
Rust web fuzzer - async/await, Tokio, directory brute-force
tFuzzer is a web fuzzer written in golang
Hack the box academy: Skills Assessment - Using Web Proxies
Intrivox is a powerful, feature-complete HTTP attack automation tool designed for penetration testers, bug bounty hunters, and security researchers. Built as a free alternative to Burp Suite's Intruder module, Intrivox provides professional-grade fuzzing capabilities without the enterprise price tag.
High-performance, baseline-aware fuzzing and vulnerability discovery framework for multi-target security testing, with adaptive mutation, coverage feedback, corpus management, crash detection, minimization, structured evidence, and reproducible fuzzing campaigns.
clean directory and file discovery for authorized web assessments.
Fuzzmap is a simple and fast command-line web fuzzing tool written in Go. It allows you to discover hidden directories, files, and endpoints on a target web server using a specified wordlist and concurrent threads.
Fuzz any fields of your JSON. Any fields combination you like. Use the available methods, combinators, mutators, strategies. Write your own.
A Burp/dirsearch optimized wordlist scraped from the robots.txt of the top 100k most visited domains.
To associate your repository with the web-fuzzing topic, visit your repo's landing page and select "manage topics."