Stars
Basics on commands/tools/info on how to assess the security of mobile applications
E2E encryption for multi-hop tty sessions or portshells + TCP/UDP port forward
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the β¦
40X/HTTP bypasser in Go. Features: Verb tampering, headers, #bugbountytips, User-Agents, extensions, default credentials...
ππ¦ Dalfox is a powerful open-source XSS scanner and utility focused on automation.
Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing
A really basic thread-safe progress bar for Golang applications
The Swiss Army knife for automated Web Application Testing
π― Cross Site Scripting ( XSS ) Vulnerability Payload List
Guidance for mitigation web shells. #nsacyber
A hosts file which blocks all services from Axel Springer Verlag.
π― T-Pot - The All In One Multi Honeypot Platform π
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
HTTP file upload scanner for Burp Proxy
A curated list of amazingly awesome Burp Extensions
PortSwigger / notes
Forked from SpiderLabs/BurpNotesExtensionBurp Notes Extension is a plugin for Burp Suite that adds a Notes tab. The tool aims to better organize external files that are created during penetration testing.
A Burp plugin to dump HTTP(S) requests/responses to a file system
A Linux enumeration script for Hack The Box
Open Source Continuous File Synchronization
Ghazi is a BurpSuite Plugins For Testing various PayLoads Like "XSS,SQLi,SSTI,SSRF,RCE and LFI" through Different tabs , Where Each Tab Will Replace Every GET or POST Parameters With Selected TAB iβ¦
Security Tool to Look For Interesting Files in S3 Buckets
A python script that finds endpoints in JavaScript files
Content discovery wordlists generated using BigQuery
A comprehensive curated list of available Bug Bounty & Disclosure Programs and Write-ups.