Stars
httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, seβ¦
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
A collection of custom security tools for quick needs.
Find CVEs that don't have a Detectify modules.
This repository is about @harshbothra_'s 365 days of Learning Tweets & Mindmaps collection.
Bash Script to Hunt all the targets/Subdomains from Chaos by Project Discovery Team
PoC for Zerologon - all research credits go to Tom Tervoort of Secura
A collection of tools to perform searches on GitHub.
Take a list of domains and probe for working HTTP and HTTPS servers
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the β¦
Collection of methodology and test case for various web vulnerabilities.
OWASP Community Pages are a place where OWASP can accept community contributions for security-related content.
List DTDs and generate XXE payloads using those local DTDs.
itsns / SAP_RECON
Forked from chipik/SAP_RECONPoC for CVE-2020-6287, CVE-2020-6286 (SAP RECON vulnerability)
ππ¦ Dalfox is a powerful open-source XSS scanner and utility focused on automation.
Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens that are already exploitable, so we can report them. We wisβ¦
Community curated list of public bug bounty and responsible disclosure programs.
IntelOwl: manage your Threat Intelligence at scale
This repo contains all the Bug Bounty Dorks sourced from different awesome sources and compiled at one place
π A collection of interesting, funny, and depressing search queries to plug into shodan.io π©βπ»
Advisories, proof of concept files and exploits that have been made public by @pedrib.
A collection of various awesome lists for hackers, pentesters and security researchers