Stars
JShunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive data, such as API endpoints and potential security v…
Fast and stealthy Amazon S3 bucket enumeration tool for pentesters.
AWS IP Ranges History Tracker Amazon - AWS provides a list of IP Addresses used by their various services through a published ip-ranges.json file. This Git repository tracks this file so that chang…
This Chromium extension scans the page for external iFrames, Scripts, and Styles, logs them to the console, and checks if their domains are resolvable.
Android binary file parser written in golang
OpenAI ChatGPT, GPT-3, GPT-4, DALL·E, Whisper API wrapper for Go
The only GraphQL wordlist you'll ever need. Operations, field names, type names... Collected on more than 60k distinct GraphQL schemas.
Zero shot vulnerability discovery using LLMs
Fetch information about a public Google document.
Interactive terminal tool to Search Docker Hub Images (written in Go)!
A comprehensive curated list of available Bug Bounty & Disclosure Programs and Write-ups.
Legitimate bug bounty programs value ethical practices and provide clear rewards to researchers for identifying security flaws
🖧🔍 WIFI / LAN intruder detector. Scans for devices connected to your network and alerts you if new and unknown devices are found.
Self-hosted bug bounty programs that are "scammy" or unethical
Academic purposes only. Attack against Salesforce lightning with guest privilege.
Takeit is an advanced tool for detecting subdomain takeovers.
Raven is a powerful and customizable web crawler written in Go.
fuzzuli is a url fuzzing tool that aims to find critical backup files by creating a dynamic wordlist based on the domain.
A fast, simple, recursive content discovery tool written in Rust.
A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.
Tutorial & Examples For Learning Argo Projects