Skip to content
View th3-alch3m1st's full-sized avatar
🎯
Focusing
🎯
Focusing

Block or report th3-alch3m1st

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Compiles a list of major CDN and WAF subnets.

Python 63 11 Updated Jan 19, 2025

Static Analyzer for Solidity and Vyper

Python 5,442 987 Updated Jan 17, 2025

POC from TestANull for CVE-2021-28482 on Exchange Server

Python 45 16 Updated May 3, 2021
Rust 30 4 Updated Jun 27, 2022

Go security checker

Go 7,951 621 Updated Jan 14, 2025

Prototype Pollution Lab

HTML 18 2 Updated Nov 20, 2020

Bruteforce HTTP Authentication

Python 139 40 Updated Mar 21, 2019

A collection of GCP IAM privilege escalation methods documented by the Rhino Security Labs team.

Python 359 74 Updated Apr 18, 2024

Assorted tools for security-related task for git repositories

JavaScript 59 2 Updated Apr 10, 2022

Extensive code infrastructure for finding unintended information leaks in files, git repositories and much more.

JavaScript 28 5 Updated Oct 24, 2022

Urls de-duplication tool for better recon.

Python 137 21 Updated Jul 10, 2024

Sudomy is a subdomain enumeration tool to collect subdomains and analyzing domains performing automated reconnaissance (recon) for bug hunting / pentesting

Shell 2,042 383 Updated Jun 27, 2024

DNS and Target HTTP History Local Storage and Search

C++ 64 14 Updated Feb 14, 2021

jsubfinder searches webpages for javascript & analyzes them for hidden subdomains and secrets (wip).

Go 267 33 Updated Jan 15, 2025

Js File Scanner

Python 165 49 Updated Dec 23, 2021

That repository contains my updates to the well know java deserialization exploitation tool ysoserial.

Java 177 36 Updated May 15, 2022

A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..etc. It could be used as a part of web content discovery, to …

957 153 Updated Jun 24, 2024

DNS Rebinding Exploitation Framework

JavaScript 488 70 Updated Apr 27, 2021

Vulmap 是一款 web 漏洞扫描和验证工具, 可对 webapps 进行漏洞扫描, 并且具备漏洞验证功能

Python 3,428 573 Updated Apr 26, 2023
Jupyter Notebook 14 6 Updated Jan 1, 2021

Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.

Python 412 72 Updated Sep 24, 2024

This repository is a suplimentary material for Android Training's done by Anant Shrivastava from 2012-2017

C 221 59 Updated Jan 4, 2021

Tools, data, and contact lists relevant to The disclose.io Project.

327 47 Updated Sep 28, 2023

Collection of scripts & fingerprinting tricks for Shodan.io

Python 250 52 Updated Jul 8, 2020

A Tool for DNS Delegation Trust Graphing

Python 405 70 Updated May 22, 2023

Customisable and automated HTTP header injection

Go 242 52 Updated Jun 27, 2024

Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens that are already exploitable, so we can report them. We wis…

Go 4,316 832 Updated Aug 3, 2024

List of periodically validated public DNS resolvers

229 31 Updated Jan 19, 2025

hardCIDR is a Linux Bash script, but also functions under macOS. Your mileage may vary on other distros. The script with no specified options will query ARIN and a pool of BGP route servers. The ro…

Shell 368 56 Updated Feb 4, 2022
Next