Skip to content
View kongwenbin's full-sized avatar
πŸ’­
I may be slow to respond.
πŸ’­
I may be slow to respond.

Block or report kongwenbin

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
49 results for sponsorable starred repositories
Clear filter

IP Lookups for Open Ports and Vulnerabilities from internetdb.shodan.io

Go 121 19 Updated Mar 10, 2022

Linux, Jenkins, AWS, SRE, Prometheus, Docker, Python, Ansible, Git, Kubernetes, Terraform, OpenStack, SQL, NoSQL, Azure, GCP, DNS, Elastic, Network, Virtualization. DevOps Interview Questions

Python 67,387 15,080 Updated Dec 28, 2024

🏡 Gee is tool of stdin to each files and stdout. It is similar to the tee command, but there are more functions for convenience. In addition, it was written as go

Go 82 14 Updated Nov 28, 2024

Google auto-complete wrapper

Python 74 6 Updated Feb 9, 2021

Wraps projectdiscovery's cdncheck library to exclude CDN hosts from input passed over stdin

Go 42 9 Updated Mar 13, 2023

🐢 A curated list of Web Security materials and resources.

11,626 1,686 Updated Feb 22, 2024

Use your macOS terminal shell to do awesome things.

29,120 1,434 Updated Sep 2, 2021

βš”οΈ Web Hacker's Weapons / A collection of cool tools used by Web hackers. Happy hacking , Happy bug-hunting

Ruby 3,915 688 Updated Jan 1, 2025

An HTTP toolkit for security research.

Go 6,174 352 Updated Jan 13, 2025

Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.

Go 4,113 462 Updated Jan 1, 2025

Accept URLs on stdin, replace all query string values with a user-supplied value

Go 783 125 Updated Nov 23, 2022

πŸŒ™πŸ¦Š Dalfox is a powerful open-source XSS scanner and utility focused on automation.

Go 3,886 437 Updated Jan 7, 2025

Umbraco CMS 7.12.4 - (Authenticated) Remote Code Execution

Python 75 40 Updated Jan 29, 2021

πŸ“™ Markdown Templates for Offensive Security OSCP, OSWE, OSCE, OSEE, OSWP exam report

Ruby 3,617 756 Updated Dec 2, 2024

XSS payloads designed to turn alert(1) into P1

JavaScript 1,350 217 Updated Sep 12, 2023

A list of cloud ranges from different providers.

Ruby 461 72 Updated Oct 20, 2022

A fuzzer for detecting open redirect vulnerabilities

Python 723 136 Updated Jul 1, 2024

A really simple utility to concate wordlists to a domain name - to pipe into your favourite resolver!

Go 83 13 Updated Apr 3, 2020

An Out-of-Band XXE server for retrieving file contents over FTP.

Python 175 46 Updated May 27, 2020

OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.

Java 6,640 1,312 Updated Jan 17, 2025

A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference

Python 4,805 1,027 Updated Aug 6, 2023

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

Python 28,634 4,012 Updated Jan 17, 2025

The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

Dockerfile 7,522 1,366 Updated Jan 14, 2025

Bruteforce database

1,479 576 Updated Jun 3, 2024

HTML5 Security Cheatsheet - A collection of HTML5 related XSS attack vectors

JavaScript 2,866 421 Updated Feb 23, 2022

HTTPLeaks - All possible ways, a website can leak HTTP requests

HTML 1,999 203 Updated Oct 23, 2024

DOMPurify - a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify works with a secure default, but offers a lot of configurability and hooks. Demo:

JavaScript 14,426 749 Updated Jan 1, 2025

Welcome to the XSS Challenge Wiki!

1,577 222 Updated Jun 24, 2020

GraphQLmap is a scripting engine to interact with a graphql endpoint for pentesting purposes. - Do not use for illegal testing ;)

Python 1,415 199 Updated Mar 11, 2024

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Python 62,561 14,892 Updated Jan 14, 2025
Next