Starred repositories
OpenZeppelin Contracts is a library for secure smart contract development.
cryptozomebie lesson code
CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security
Starter workspace to use with the CodeQL extension for Visual Studio Code.
crawls the website and finds broken social media links that can be hijacked
A python script that finds endpoints in JavaScript files
Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.
Fetch all the URLs that the Wayback Machine knows about for a domain
SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files
A simple and stealthy reverse shell written in Nim that bypasses Windows Defender detection. This tool allows you to establish a reverse shell connection with a target system. Use responsibly for e…
payloads for P4wnP1 A.L.O.A
GF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic, interesting Subs) parameters grep
🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.
Python tool made to test CORS misconfiguration and create necessary PoC files
Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application
Golang client for querying SecurityTrails API data
A tool to dump Java serialization streams in a more human readable form.
A list of useful payloads and bypass for Web Application Security and Pentest/CTF