Octavian's starred repositories

trufflehog

Find and verify secrets

Language:GoLicense:AGPL-3.0Stargazers:14284Issues:167Issues:589

nebula

A scalable overlay networking tool with a focus on performance, simplicity and security

sampler

Tool for shell commands execution, visualization and alerting. Configured with a simple YAML file.

Language:GoLicense:GPL-3.0Stargazers:12287Issues:158Issues:83

atomic-red-team

Small and highly portable detection tests based on MITRE's ATT&CK.

script

Making it easy to write shell-like scripts in Go

AutoRecon

AutoRecon is a multi-threaded network reconnaissance tool which performs automated enumeration of services.

Language:PythonLicense:GPL-3.0Stargazers:4913Issues:101Issues:164

keyhacks

Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.

axiom

The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf, masscan, nuclei, meg and many more!

Language:ShellLicense:MITStargazers:3900Issues:88Issues:419

redsocks

transparent TCP-to-proxy redirector

SSRF-Testing

SSRF (Server Side Request Forgery) testing resources

cariddi

Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more

Language:GoLicense:GPL-3.0Stargazers:1394Issues:13Issues:60

Garud

An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters and scans for some low hanging vulnerabilities automatically.

Language:ShellLicense:MITStargazers:758Issues:17Issues:38

scant3r

ScanT3r - Module based Bug Bounty Automation Tool ( use Lotus instead github.com/bugBlocker/lotus )

Language:PythonLicense:GPL-3.0Stargazers:684Issues:28Issues:29

resolvers

The most exhaustive list of reliable DNS resolvers.

open-source-web-scanners

A list of open source web security scanners

License:Apache-2.0Stargazers:594Issues:18Issues:0

shellz

shellz is a small utility to manage your ssh, telnet, kubernetes, winrm, web or any custom shell in a single place.

Language:GoLicense:NOASSERTIONStargazers:560Issues:20Issues:13

RAUDI

A repo to automatically generate and keep updated a series of Docker images through GitHub Actions.

Language:PythonLicense:GPL-3.0Stargazers:545Issues:14Issues:20

kdigger

Kubernetes focused container assessment and context discovery tool for penetration testing

Language:GoLicense:Apache-2.0Stargazers:416Issues:16Issues:6

rescope

A scope generation tool for Burp Suite & ZAP

Language:GoLicense:MITStargazers:314Issues:9Issues:13

reconness

ReconNess is a platform to allow continuous recon (CR) where you can set up a pipeline of #recon tools (Agents) and trigger it base on schedule or events.

Language:C#License:MITStargazers:304Issues:15Issues:33

the-nuclei-templates

Nuclei templates written by us.

Bug-Bounty-Scripts

The scripts I write to help me on my bug bounty hunting

Language:LuaLicense:GPL-3.0Stargazers:115Issues:7Issues:0

gjfy

gjfy is a standalone one-time link server. Use it to securely share secrets.

Language:GoLicense:ISCStargazers:56Issues:5Issues:1

masscan

IVRE's fork of the famous TCP port scanner. See below for details.

Language:CLicense:AGPL-3.0Stargazers:39Issues:4Issues:3

websy

Keep track of changes in website with WEBSY

Language:PythonLicense:LGPL-3.0Stargazers:36Issues:4Issues:1
Language:PythonStargazers:21Issues:0Issues:0

roundrobin

roundrobin with configurable rotating strategies

Language:GoLicense:MITStargazers:11Issues:12Issues:6

0xtavian

Interlace C++

Language:C++Stargazers:4Issues:1Issues:0

ERLPopper

Module and example scripts to help test the security of Erlang Runtime System (ERTS) nodes using Erlang Distribution Protocol

Language:PythonStargazers:3Issues:3Issues:0