-
Galaxy-Bugbounty-Checklist Public
Forked from 0xmaximus/Galaxy-Bugbounty-ChecklistTips and Tutorials for Bug Bounty and also Penetration Tests.
UpdatedFeb 12, 2024 -
vulnerability-Checklist Public
Forked from Az0x7/vulnerability-ChecklistThis repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter
UpdatedFeb 10, 2024 -
-
-
-
-
xurlfind3r Public
Forked from hueristiq/xurlfind3rA CLI utility to find domain's known URLs from curated passive online sources.
Go MIT License UpdatedAug 4, 2023 -
shortscan Public
Forked from bitquark/shortscanAn IIS short filename enumeration tool
Go MIT License UpdatedJul 31, 2023 -
certSniff Public
Forked from A-poc/certSniffA certificate transparency log keyword sniffer written in python
Python UpdatedJun 12, 2023 -
CVE-2023-2825 Public
Forked from Occamsec/CVE-2023-2825GitLab CVE-2023-2825 PoC. This PoC leverages a path traversal vulnerability to retrieve the /etc/passwd file from a system running GitLab 16.0.0.
Python UpdatedJun 2, 2023 -
fuzzuli Public
Forked from musana/fuzzulifuzzuli is a url fuzzing tool that aims to find critical backup files by creating a dynamic wordlist based on the domain.
Go MIT License UpdatedJan 8, 2023 -
google-dorks Public
Forked from Proviesec/google-dorksUseful Google Dorks for WebSecurity and Bug Bounty
1 UpdatedJan 8, 2023 -
XSSFire Public
Forked from SeifElsallamy/XSSFireA standalone Blind XSS Script.
PHP UpdatedJan 6, 2023 -
Blind-XSS-Manager Public
Forked from SeifElsallamy/Blind-XSS-ManagerNever forget where you inject.
-
userefuzz Public
Forked from root-tanishq/userefuzzUser-Agent , X-Forwarded-For and Referer SQLI Fuzzer
Python MIT License UpdatedDec 5, 2022 -
leaky-paths Public
Forked from ayoubfathi/leaky-pathsA collection of special paths linked to major web CVEs, known misconfigurations, juicy APIs ..etc. It could be used as a part of web content discovery, to scan passively for high-quality endpoints …
UpdatedDec 2, 2022 -
cent Public
Forked from xm1k3/centCommunity edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one place
Go Apache License 2.0 UpdatedNov 26, 2022 -
awesome-hacker-search-engines Public
Forked from edoardottt/awesome-hacker-search-enginesA curated list of awesome search engines useful during Penetration testing, Vulnerability assessments, Red Team operations, Bug Bounty and more
UpdatedNov 16, 2022 -
VhostFinder Public
Forked from wdahlenburg/VhostFinderIdentify virtual hosts by similarity comparison
-
Hidden parameters discovery suite
Rust GNU General Public License v3.0 UpdatedNov 14, 2022 -
xless Public
Forked from mazen160/xlessThe Serverless Blind XSS App
JavaScript UpdatedNov 12, 2022 -
docs-public Public
Forked from vk-cs/docs-publicДокументация VK Cloud
GNU General Public License v3.0 UpdatedNov 12, 2022 -
arsenal Public
Forked from Orange-Cyberdefense/arsenalArsenal is just a quick inventory and launcher for hacking programs
Python GNU General Public License v3.0 UpdatedNov 10, 2022 -
katana Public
Forked from projectdiscovery/katanaA next-generation crawling and spidering framework.
Go MIT License UpdatedNov 8, 2022 -
web-inf-path-trav Public
Forked from Invicti-Security/web-inf-path-travTool for helping in the exploitation of path traversal vulnerabilities in Java web applications
Python MIT License UpdatedNov 4, 2022 -
fuzz4bounty Public
Forked from 0xPugal/fuzz4bountyAwesome wordlists for Bug Bounty Hunting
1 UpdatedOct 11, 2022 -
awesome-google-vrp-writeups Public
Forked from xdavidhu/awesome-google-vrp-writeups🐛 A list of writeups from the Google VRP Bug Bounty program
Python UpdatedOct 7, 2022 -
AWSome-Pentesting Public
Forked from pop3ret/AWSome-PentestingMy cheatsheet notes to pentest AWS infrastructure
GNU General Public License v3.0 UpdatedOct 5, 2022 -
LoggerPlusPlus-API-Filters Public
Forked from bnematzadeh/LoggerPlusPlus-API-FiltersA Collection of Logger++ Filters for Hunting API Vulnerabilities
UpdatedSep 19, 2022 -
airixss Public
Forked from ferreiraklet/airixssFinding XSS during recon
Go MIT License UpdatedSep 13, 2022