Stars
Scripted Local Linux Enumeration & Privilege Escalation Checks
Damn Vulnerable Restaurant is an intentionally vulnerable Web API game for learning and training purposes dedicated to developers, ethical hackers and security engineers.
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
grep rough audit - source code auditing tool
Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter
Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist
RedTeam/Pentest notes and experiments tested on several infrastructures related to professional engagements.
The repo contains a series of challenges for learning Frida for Android Exploitation.
πA curated list of modern Android exploitation conference talks.
A simple command line tool using which you can skip phone number based SMS verification by using a temporary phone number that acts like a proxy.
Injects frida gadget using zygisk to bypass anti-tamper checks.
This is a simple bash script to fix errors with apt update, upgrade MetaSploit and run some upgrades to improve the system usability without breaking it, by using Pimpmykali script.
Basics on commands/tools/info on how to assess the security of mobile applications
An extremely effective subdomain enumeration wordlist of 3,000,000 lines, crafted by harvesting SSL certs from the entire IPv4 space.
This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-Google owned code.
π A collection of interesting, funny, and depressing search queries to plug into shodan.io π©βπ»
A curated list of web3Security materials and resources For Pentesters and Bug Hunters.
Checklist of the most important security countermeasures when designing, testing, and releasing your API
Tips and Tutorials for Bug Bounty and also Penetration Tests.