🤖 LLM-powered agent for automated JS analysis in bug hunting & pentesting.
-
Updated
Apr 29, 2025 - Python
🤖 LLM-powered agent for automated JS analysis in bug hunting & pentesting.
Automated, program-aware bug bounty reconnaissance pipeline utilizing a centralized SQLite database, parallelized execution, continuous JavaScript monitoring, and interactive HTML reporting.
JavaScript Intelligence Engine - SPA bundle'larindan secret/endpoint/source-map cikartan tek dosya ofansif recon araci. 63 secret regex'i, Source Map V3 dekoderi, webpack chunk parser, multi-format cikti. Bug bounty + self-audit.
Security Assistant Researcher Analyzer
A Python security reconnaissance tool to discover JavaScript files, sensitive secrets, and API endpoints in web applications.
NearPath is a lightweight, guided fuzzing tool designed to discover hidden web application endpoints by combining shallow crawling, JavaScript mining, and heuristic path mutation.
A highly automated and modular bug bounty reconnaissance toolkit integrating over 15 industry-standard tools for streamlined subdomain enumeration, vulnerability detection, and OSINT gathering. Designed for efficiency, scalability, and precision in real-world security assessments.
Fast Frontend JS Static Reconnaissance & Secret/Endpoint Hunter CLI
MELTOR is an all-in-one API endpoint discovery and validation engine designed for security researchers, penetration testers, and developers. It combines a high-performance web crawler, a JavaScript AST parser, an intelligent fuzzer, and a concurrent endpoint validator into a single powerful tool.
ReconWeave is an elite, zero-dependency Attack Surface Mapper and Intelligent Web Crawler designed for penetration testers, bug bounty hunters, and security researchers. Built entirely on Python's standard library, it provides deep inspection of web applications, automatic secret detection, and seamless proxy chaining.
NOEMVEX-WEB-ARCHITECT v4.1: Advanced stealth web reconnaissance and API auditing suite. Bypasses WAFs via Exponential Backoff. Automatically decompiles minified JavaScript to extract hardcoded secrets, maps Shadow API routes, and performs active GDPR/PII data leak hunting with Zero-False-Positive JWT validation.
Domain attack-surface & static resource discovery tool for subdomains, live hosts, JS files, source maps & API endpoints
To associate your repository with the javascript-analysis topic, visit your repo's landing page and select "manage topics."