Skip to content
View n1sh1th's full-sized avatar

Block or report n1sh1th

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

This is a collection of some of mine mindmaps abount pentesting created with Obsidian.

358 61 Updated Jan 15, 2025

An extension for extracting endpoints

JavaScript 4 1 Updated Feb 27, 2025

A Collection of Notes, Checklists, Writeups on Bug Bounty Hunting and Web Application Security.

1,851 308 Updated Sep 5, 2021

The First Open Source Bug Bounty Platform

HTML 70 17 Updated Mar 24, 2025

A browser bookmark to show hidden fields and enable disabled fields on a web page

21 2 Updated Oct 29, 2023

BetterBugBounty - Here tools are classic, bugs are hunted, and nostalgia is the ultimate weapon!

29 12 Updated Feb 10, 2024

🕵️‍♂️ All-in-one OSINT tool for analysing any website

TypeScript 24,796 1,933 Updated Apr 13, 2025

how to look for Leaked Credentials !

911 115 Updated May 6, 2024

All about bug bounty (bypasses, payloads, and etc)

6,202 1,203 Updated Sep 8, 2023

Windows / Linux Local Privilege Escalation Workshop

Batchfile 1,008 246 Updated Jan 15, 2019

Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist

Python 1,343 139 Updated Apr 13, 2025

Real-world infosec wordlists, updated regularly

1,482 177 Updated Apr 17, 2025

Gather and update all available and newest CVEs with their PoC.

HTML 6,895 873 Updated Apr 17, 2025

Information Security Information From Web

27 16 Updated Sep 17, 2024

Rockyou for web fuzzing

Shell 2,770 499 Updated Feb 26, 2025

Awesome Vulnerable Applications

1,161 176 Updated Aug 7, 2024

A curated list of "damn vulnerable apps" and exploitable VMs / wargames. See contributing.md for information.

JavaScript 32 6 Updated Apr 27, 2019

Automatically exported from code.google.com/p/domxsswiki

HTML 530 77 Updated May 12, 2018

A collection of tiny XSS Payloads that can be used in different contexts. https://tinyxss.terjanq.me

JavaScript 2,074 204 Updated Nov 29, 2024

A collection of modern/faster/saner alternatives to common unix commands.

31,862 799 Updated Sep 10, 2024

Notes about attacking Jenkins servers

Python 2,047 335 Updated Jul 10, 2024

Collection of Facebook Bug Bounty Writeups

637 120 Updated Dec 27, 2024

OWASP Web Application Security Testing Checklist

1,857 372 Updated Aug 18, 2022

A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference

Python 5,070 1,062 Updated Aug 6, 2023

Bug Bounty stuffs, payloads, scripts, profiles, tips and tricks, ...

BitBake 147 32 Updated Jul 30, 2020

Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens that are already exploitable, so we can report them. We wis…

Go 4,436 846 Updated Jan 23, 2025

Exphub[漏洞利用脚本库] 包括Webloigc、Struts2、Tomcat、Nexus、Solr、Jboss、Drupal的漏洞利用脚本,最新添加CVE-2020-14882、CVE-2020-11444、CVE-2020-10204、CVE-2020-10199、CVE-2020-1938、CVE-2020-2551、CVE-2020-2555、CVE-2020-2883、CVE-…

Python 4,199 1,104 Updated Apr 4, 2021

Some files for bruteforcing certain things.

1,282 377 Updated Feb 4, 2025
Next