0xceeb's starred repositories

gron

Make JSON greppable!

nuclei-templates

Community curated list of templates for the nuclei engine to find security vulnerabilities.

Language:JavaScriptLicense:MITStargazers:8731Issues:200Issues:1456

OneForAll

OneForAll是一款功能强大的子域收集工具

Language:PythonLicense:GPL-3.0Stargazers:8000Issues:101Issues:317

Penetration_Testing_POC

渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell cobub-razor cve rce sql sql-poc poc-exp bypass oa-getshell cve-cms

Language:HTMLLicense:Apache-2.0Stargazers:6416Issues:255Issues:7

HowToHunt

Collection of methodology and test case for various web vulnerabilities.

axiom

The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf, masscan, nuclei, meg and many more!

Language:ShellLicense:MITStargazers:3937Issues:89Issues:422

awesome-cve-poc

✍️ A curated list of CVE PoCs.

massdns

A high-performance DNS stub resolver for bulk lookups and reconnaissance (subdomain enumeration)

Language:CLicense:GPL-3.0Stargazers:3069Issues:73Issues:110

GitDorker

A Python program to scrape secrets from GitHub through usage of a large repository of dorks.

aws

A collection of bash shell scripts for automating various tasks with Amazon Web Services using the AWS CLI and jq.

Language:ShellLicense:Apache-2.0Stargazers:1166Issues:53Issues:6

Gf-Patterns

GF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic, interesting Subs) parameters grep

FavFreak

Making Favicon.ico based Recon Great again !

Language:PythonLicense:MITStargazers:1101Issues:20Issues:6

pyfiscan

Free web-application vulnerability and version scanner

Language:PythonLicense:NOASSERTIONStargazers:554Issues:39Issues:71

degoogle

search Google and extract results directly. skip all the click-through links and other sketchiness

Language:PythonLicense:MITStargazers:488Issues:17Issues:4

NoXss

Faster xss scanner,support reflected-xss and dom-xss

Language:PythonLicense:MITStargazers:442Issues:5Issues:8

git-scanner

A tool for bug hunting or pentesting for targeting websites that have open .git repositories available in public

Language:ShellLicense:MITStargazers:333Issues:10Issues:2

urlgrab

A golang utility to spider through a website searching for additional links.

urldedupe

Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations

Language:C++License:MITStargazers:310Issues:6Issues:8

awvs_script_decode

解密好的AWVS10.5 data/script/目录下的脚本

Language:SourcePawnStargazers:269Issues:6Issues:0

s3recon

Amazon S3 bucket finder and crawler.

Language:PythonLicense:MITStargazers:144Issues:6Issues:6

uriDeep

Unicode encoding attacks with machine learning

Language:PythonLicense:GPL-3.0Stargazers:94Issues:7Issues:0

UltimateCMSWordlists

📚 An ultimate collection wordlists of the best-known CMS

flumberboozle

Suite of programs meant to aid in bug hunting and security assessments

Language:PythonLicense:MITStargazers:74Issues:4Issues:3

subdomainsEnumerator

A docker image which will enumerate, sort, unique and resolve the results of various subdomains enumeration tools.

Language:ShellLicense:MITStargazers:71Issues:3Issues:1

slurp

S3 bucket enumerator

Language:GoLicense:NOASSERTIONStargazers:45Issues:2Issues:0

cidrToIps

reads a list of IP ranges in CIDR notation and prints the individual IP addresses.

Language:PythonLicense:GPL-3.0Stargazers:15Issues:2Issues:1

secret-url-finder

Python script to find URLs that could contain secrets

Language:PythonLicense:NOASSERTIONStargazers:10Issues:2Issues:0

massprint

A tool to do basic fingerprinting across a large number of hosts

wordpress_plugin_security_testing_cheat_sheet

WordPress Plugin Security Testing Cheat Sheet

Stargazers:1Issues:0Issues:0