Skip to content
View 0xtavi's full-sized avatar

Block or report 0xtavi

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Deobfuscate Javascript code using ChatGPT

TypeScript 2,207 110 Updated Apr 22, 2025

Infosec Wordlists and more.

Python 830 239 Updated Jul 20, 2023

Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one place

Go 971 162 Updated Jan 17, 2025

🧪 Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.

Python 39 1 Updated Dec 12, 2024
Rust 377 45 Updated May 17, 2023

how to look for Leaked Credentials !

912 116 Updated May 6, 2024

Attack surface detector that identifies endpoints by static analysis

Crystal 695 49 Updated Apr 22, 2025

Static Application Security Testing (SAST) engine focused on covering the OWASP Top 10, to make source code analysis to find vulnerabilities right in the source code, focused on a agile and easy to…

Go 533 81 Updated Apr 10, 2022

VisualCodeGrepper - Code security scanning tool.

Visual Basic .NET 537 117 Updated Jul 6, 2023

One place for all the default credentials to assist the Blue/Red teamers identifying devices with default password 🛡️

Python 6,049 726 Updated Apr 15, 2025
Python 105 22 Updated May 25, 2023

The recursive internet scanner for hackers. 🧡

Python 8,349 653 Updated Apr 23, 2025

Automating situational awareness for cloud penetration tests.

Go 2,084 199 Updated Mar 13, 2025

Paramix is a command-line tool for modifying the parameters of a list of URLs from stdin and returns them in stdout.

Go 16 2 Updated Aug 23, 2024

ProxyDock is a Dockerfile and Bash script that converts your OpenVPN files into local proxies.

Python 138 26 Updated Feb 20, 2020

#BugBounty #BugBounty Tools #WebDeveloper Tool

JavaScript 37 8 Updated Oct 11, 2019

A high performance offensive security tool for reconnaissance and vulnerability scanning

Python 3,167 412 Updated Jun 4, 2024

Detect and validate 400+ types of hardcoded secrets with advanced checks. Use it as a pre-commit hook, GitHub Action, or CLI for proactive secret detection and security.

Python 1,744 155 Updated Apr 23, 2025

Automated pentest reporting with custom Word templates, project tracking, and client management tools. Streamline your security workflows effortlessly!

TypeScript 966 115 Updated Apr 10, 2025

A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..etc. It could be used as a part of web content discovery, to …

971 156 Updated Jun 24, 2024

Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.

PHP 8,495 2,122 Updated Nov 10, 2023

Burp extension to detect alias traversal via NGINX misconfiguration at scale.

Python 259 35 Updated Nov 18, 2021

This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.

Java 56 20 Updated May 30, 2023

Burp Suite Pro extension

Java 10 5 Updated May 26, 2017

A burp suite extension that enumerates infrastructure and application admin interfaces (OTG-CONFIG-005)

Java 118 20 Updated Jun 16, 2022

Burp Suite Extension useful to verify OAUTHv2 and OpenID security

Java 173 26 Updated Oct 26, 2024

Burp Suite Extension useful to verify OAUTHv2 and OpenID security

Java 187 5 Updated Dec 3, 2024

递归式寻找域名和api。

Python 717 93 Updated Aug 3, 2023

SQL 注入利用工具,存在waf的情况下自定义编写tamper脚本 dump数据

Python 288 45 Updated Aug 13, 2020

Automated blind-xss search for Burp Suite

Python 283 65 Updated Oct 10, 2019
Next