Skip to content
View gm2208's full-sized avatar

Block or report gm2208

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A browser extension that allows you to monitor, intercept, and debug JavaScript sinks based on customizable configurations.

JavaScript 494 51 Updated Dec 13, 2024

A modern vulnerable web app

HTML 976 339 Updated Mar 11, 2021

⚡ Automatically decrypt encryptions without knowing the key or cipher, decode encodings, and crack hashes ⚡

Python 18,439 1,177 Updated Mar 26, 2024

Python for AWAE (Advanced Web Attacks and Exploitation)

Python 93 16 Updated Sep 5, 2023

Top disclosed reports from HackerOne

Python 4,022 747 Updated Dec 19, 2024
TypeScript 9 4 Updated May 12, 2024

This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter

2,758 626 Updated Feb 10, 2024

apk.sh makes reverse engineering Android apps easier, automating some repetitive tasks like pulling, decoding, rebuilding and patching an APK.

Shell 3,381 193 Updated Jul 30, 2024

Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services used by your company and/or bug bounty targets!

Go 405 32 Updated Dec 6, 2024

A curated list of awesome GraphQL Security frameworks, libraries, software and resources

309 22 Updated Feb 15, 2024

A GitHub Security Lab initiative, providing an in-repo learning experience, where learners secure intentionally vulnerable code.

Python 2,128 223 Updated Dec 18, 2024

Fast passive subdomain enumeration tool.

Go 10,545 1,299 Updated Dec 23, 2024

OffSec OSINT Pentest/RedTeam Tools

850 114 Updated Nov 14, 2024

Differential fuzzing REPL for HTTP implementations.

Python 718 65 Updated Dec 29, 2024

A rapid HTTP downgrade smuggling scanner written in Go.

Go 250 14 Updated May 16, 2024

BChecks collection for Burp Suite Professional and Burp Suite Enterprise Edition

650 116 Updated Dec 2, 2024

Bambdas collection for Burp Suite Professional and Community.

Java 212 31 Updated Dec 19, 2024

Burp Suite extension for bypassing client-side encryption for pentesting and bug bounty

Python 194 26 Updated Dec 19, 2024

🔐 A CLI tool to extract server certificates

Java 721 66 Updated Dec 29, 2024

A list of resources for those interested in getting started in bug bounties

10,847 1,933 Updated Jul 23, 2024

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Python 62,195 14,827 Updated Dec 4, 2024

Application Security Verification Standard

HTML 2,790 676 Updated Dec 26, 2024

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

Python 28,490 3,989 Updated Dec 29, 2024

Official OWASP Top 10 Document Repository

HTML 4,398 844 Updated Nov 23, 2024

The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

Dockerfile 7,463 1,355 Updated Dec 20, 2024