Skip to content
View zy9ard3's full-sized avatar

Block or report zy9ard3

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
38 stars written in Python
Clear filter

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Python 62,306 14,847 Updated Dec 4, 2024

The recursive internet scanner for hackers. 🧡

Python 7,467 564 Updated Jan 4, 2025

Multi-Cloud Security Auditing Tool

Python 6,834 1,077 Updated Nov 19, 2024

One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️

Python 5,814 707 Updated Dec 23, 2024

Static Analyzer for Solidity and Vyper

Python 5,420 980 Updated Dec 16, 2024

"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.

Python 4,940 723 Updated Jan 4, 2025

An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws

Python 3,252 327 Updated Nov 21, 2024

Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing

Python 2,572 431 Updated Jun 24, 2024

Zero shot vulnerability discovery using LLMs

Python 1,296 131 Updated Oct 31, 2024

TREVORspray is a modular password sprayer with threading, clever proxying, loot modules, and more!

Python 1,089 150 Updated Nov 13, 2024

Obtain GraphQL API schema even if the introspection is disabled

Python 1,083 97 Updated Sep 28, 2024

Automatic SSTI detection tool with interactive interface

Python 909 112 Updated Oct 14, 2024

Fetch information about a public Google document.

Python 859 94 Updated Nov 14, 2023

A Burp Suite extension to add OpenAI (GPT) on Burp and help you with your Bug Bounty recon to discover endpoints, params, URLs, subdomains and more!

Python 841 98 Updated May 3, 2023

Android security insights in full spectrum.

Python 554 75 Updated Oct 20, 2024

Automated learning of regexes for DNS discovery

Python 362 42 Updated Feb 18, 2023

A simple Burp Suite extension to crawl JavaScript (JS) files in passive mode and display the results directly on the issues

Python 345 36 Updated Jul 25, 2023

Find subdomains with GPT, for free

Python 337 47 Updated Apr 18, 2024

Automated client-side template injection (sandbox escape/bypass) detection for AngularJS v1.x.

Python 307 87 Updated Oct 20, 2021

Official Kali Linux tool to check all urls of a domain for SQL injections :)

Python 302 40 Updated Jun 2, 2024

Advanced Time-based Blind SQL Injection fuzzer for HTTP Headers

Python 287 48 Updated Mar 31, 2024

Monitoring framework to detect and report newly found subdomains on a specific target using various scanning tools

Python 269 53 Updated Jul 13, 2024

jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice

Python 252 25 Updated Apr 9, 2024

This repository presents a proof-of-concept of CVE-2023-7028

Python 238 42 Updated Jan 13, 2024

Leverage certificate transparency live feed to monitor for newly issued subdomain certificates (last 90 days, configurable), for domains participating in bug bounty programs.

Python 220 48 Updated Dec 7, 2022

Exploits targeting Symfony

Python 196 46 Updated Sep 19, 2024

Low and slow password spraying tool, designed to spray on an interval over a long period of time

Python 190 30 Updated Sep 27, 2024

Academic purposes only. Attack against Salesforce lightning with guest privilege.

Python 150 34 Updated Feb 24, 2021

Generate wordlists from Github repositories

Python 96 16 Updated Nov 25, 2023

Find related domains of a given domain.

Python 96 6 Updated Aug 5, 2023
Next