Skip to content
View xqd-ai's full-sized avatar

Block or report xqd-ai

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Exploits targeting Symfony

Python 200 47 Updated Sep 19, 2024

Taken urls and match words => return urls which true or false matched

Python 8 2 Updated Sep 16, 2021

403Bypasser is a simple plugin that lets you bypass 403 status code by transforming HTTP requests with custom templates.

TypeScript 61 9 Updated Jan 11, 2025

An insane list of all dorks taken from everywhere from various different sources.

558 140 Updated Nov 8, 2024

Automated way to extract juicy info with subfinder and waybackurls

Go 29 3 Updated Jan 18, 2025

Semi-automatic OSINT framework and package manager

Rust 2,159 186 Updated Jan 31, 2025

IntelOwl: manage your Threat Intelligence at scale

Python 4,045 468 Updated Mar 6, 2025

E-mails, subdomains and names Harvester - OSINT

Python 12,151 2,098 Updated Mar 3, 2025

🔥 Web-application firewalls (WAFs) from security standpoint.

Python 6,515 1,080 Updated Oct 28, 2024

Offensive Web Testing Framework (OWTF), is a framework which tries to unite great tools and make pen testing more efficient http://owtf.org https://twitter.com/owtfp

Python 1,845 473 Updated Nov 22, 2024

A collection of inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners, cli/web tools and more.

159,848 10,071 Updated Nov 19, 2024

A multi-platform bug bounty toolkit that can be installed on Debian/Ubuntu or set up with Docker.

Dockerfile 1,117 279 Updated Aug 16, 2023

Automated Tool for Testing Header Based Blind SQL Injection

Python 271 65 Updated Jul 23, 2023

Enumerate / Dump Docker Registry

Python 172 25 Updated Apr 10, 2024

Alternative to XSS Hunter for blind XSS.

PHP 50 11 Updated Dec 8, 2022

ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.

PHP 1,978 349 Updated Dec 17, 2024

Academic purposes only. Attack against Salesforce lightning with guest privilege.

Python 156 38 Updated Feb 24, 2021

Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.

Python 492 80 Updated Feb 28, 2025

Bug Bounty Methodology 2025: Tools, techniques, and steps to guide you through reconnaissance, enumeration, and testing.

85 22 Updated Jan 9, 2025

Fetches javascript file from a list of URLS or subdomains.

Go 758 94 Updated May 21, 2023

CeWL is a Custom Word List Generator

Ruby 2,143 278 Updated Oct 28, 2024

Quickly generate context-specific wordlists for content discovery from lists of URLs or paths

Go 220 39 Updated May 4, 2022

Extract URLs, paths, secrets, and other interesting bits from JavaScript

Go 1,496 106 Updated May 22, 2024

Parse source code directories and output list of URLs that are then sent through a proxy.

143 38 Updated Apr 30, 2022

Port of Wappalyzer (uncovers technologies used on websites) to automate mass scanning.

Go 1,007 146 Updated Nov 26, 2023

A high performance go implementation of Wappalyzer Technology Detection Library

Go 812 130 Updated Mar 2, 2025

swagroutes is a command-line tool that extracts and lists API routes from Swagger files in YAML or JSON format.

Python 56 7 Updated Apr 23, 2023

🔎 Find origin servers of websites behind CloudFlare by using Internet-wide scan data from Censys.

Python 1 Updated Dec 8, 2021
Next