
-
Stay n00b!
- Indonesia
- https://0x71rex.github.io
- @0x71rex
- in/aldillah-afridhan-b1a2ba12a
- @0x71rex
- https://discord.gg/QeGV2eexJA
Stars
Convolutional neural network for analyzing pentest screenshots
abdulsec / bugbountytools-methodology
Forked from blackhatethicalhacking/Bug_Bounty_Tools_and_MethodologyBug Bounty Tools used on Twitch - Recon
An experimental high-performance DNS query bruteforce tool built with AF_XDP for extremely fast and accurate bulk DNS lookups.
Results from analyzing data gathered from 1.6 billion subdomains
Local File Inclusion discovery and exploitation tool
Automation for javascript recon in bug bounty.
Information about web3 security and programming tutorials/tools
curation of all(most) immunefi bug bounty writeups I could find(till now)
Find The Admin Panel & SQL Injection Endpoints, Using Google Dorks !!!
0x71rex / lostools
Forked from coffinxp/loxsbest tool for finding SQLi,XSS,LFi,OpenRedirect
0x71rex / xssorRecon
Forked from xss0r/xssorReconAutomate Recon XSS Bug Bounty
Advanced Time-based Blind SQL Injection fuzzer for HTTP Headers
π ORedirectMe is a robust and efficient tool designed to detect Open Redirect vulnerabilities in web applications.
π LFIer is a powerful and efficient tool for detecting Local File Inclusion (LFI) vulnerabilities in web applications.
β‘ XSSuccessor is a powerful, asynchronous Cross-Site Scripting (XSS) detection tool.
πͺ XSSDynaGen is a tool designed to analyze URLs with parameters, identify the characters allowed by the server, and generate advanced XSS payloads based on the analysis results.
BeeXSS is a specialized automated tool designed to detect Blind XSS (Cross-Site Scripting) vulnerabilities in web applications.
This tool will check for Sensitive Data Leakage with some useful patterns/RegEx. The patterns are mostly targeted on waybackdata and filter everything accordingly.
The FOFA Library collects usage tips, common scenarios, F&Q, and more for FOFA.
JSNinja is a powerful tool designed for security researchers and developers looking to extract sensitive information and Urls from JavaScript files.
shef - extract/scrape IPs from shodan without any API key
π₯ Turn entire websites into LLM-ready markdown or structured data. Scrape, crawl and extract with a single API.
AIHawk aims to easy job hunt process by automating the job application process. Utilizing artificial intelligence, it enables users to apply for multiple jobs in a tailored way.
SpideyX a multipurpose Web Penetration Testing tool with asynchronous concurrent performance with multiple mode and configurations.