XOR_'s starred repositories

fuzzdb

Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.

Language:PHPStargazers:8090Issues:0Issues:0

fuzz.txt

Potentially dangerous files

License:WTFPLStargazers:2838Issues:0Issues:0

SecLists

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.

Language:PHPLicense:MITStargazers:55999Issues:0Issues:0

CheatSheetSeries

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

Language:PythonLicense:CC-BY-SA-4.0Stargazers:27267Issues:0Issues:0

wrongsecrets

Vulnerable app with examples showing how to not use secrets

Language:JavaLicense:AGPL-3.0Stargazers:1185Issues:0Issues:0

command-injection-payload-list

🎯 Command Injection Payload List

License:MITStargazers:2805Issues:0Issues:0

open-redirect-payload-list

🎯 Open Redirect Payload List

License:MITStargazers:507Issues:0Issues:0

directory-payload-list

🎯 Directory Payload List

License:MITStargazers:140Issues:0Issues:0

SQLInjectionWiki

A wiki focusing on aggregating and documenting various SQL injection methods

Language:HTMLStargazers:759Issues:0Issues:0

Taranis-NG

Taranis NG is an OSINT gathering and analysis tool for CSIRT teams and organisations. It allows team-to-team collaboration, and contains a user portal for simple self asset management. Taranis NG was developed by SK-CERT with a help from wide CSIRT community.

Language:VueLicense:EUPL-1.2Stargazers:2Issues:0Issues:0

xss-payload-list

🎯 Cross Site Scripting ( XSS ) Vulnerability Payload List

License:MITStargazers:5965Issues:0Issues:0

csv-injection-payloads

🎯 CSV Injection Payloads

License:MITStargazers:176Issues:0Issues:0

sql-injection-payload-list

🎯 SQL Injection Payload List

License:MITStargazers:4654Issues:0Issues:0

bazaar

Android security & privacy analysis for the masses

Language:CSSLicense:AGPL-3.0Stargazers:271Issues:0Issues:0

APKiD

Android Application Identifier for Packers, Protectors, Obfuscators and Oddities - PEiD for Android

Language:YARALicense:NOASSERTIONStargazers:1978Issues:0Issues:0

awesome-pentest

:computer:⚔️ A collection of awesome penetration testing resources, tools, and other shiny things.

Stargazers:230Issues:0Issues:0

awesome-pentest

A collection of awesome penetration testing resources, tools and other shiny things

Stargazers:21122Issues:0Issues:0

A-Red-Teamer-diaries

RedTeam/Pentest notes and experiments tested on several infrastructures related to professional engagements.

Stargazers:1712Issues:0Issues:0

Zehef

Zehef is an osint tool to track emails

Language:PythonLicense:GPL-3.0Stargazers:567Issues:0Issues:0

DocsGPT

GPT-powered chat for documentation, chat with your documents

Language:PythonLicense:MITStargazers:14474Issues:0Issues:0

DefconArsenalTools

Defcon Arsenal Tools (DArT) is a curation of tools presented at DEF CON, the world's largest hacker con.

License:GPL-3.0Stargazers:20Issues:0Issues:0
License:MITStargazers:12789Issues:0Issues:0

dostoevsky-pentest-notes

Notes for taking the OSCP in 2097. Read in book form on GitBook

Stargazers:615Issues:0Issues:0

Wordpresscan

WPScan rewritten in Python + some WPSeku ideas

Language:PythonStargazers:631Issues:0Issues:0

SSRFmap

Automatic SSRF fuzzer and exploitation tool

Language:PythonLicense:MITStargazers:2875Issues:0Issues:0

nuclei-templates

Community curated list of templates for the nuclei engine to find security vulnerabilities.

License:MITStargazers:1Issues:0Issues:0

hacktricks

Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.

Language:PythonLicense:NOASSERTIONStargazers:1Issues:0Issues:0

bloodyAD

BloodyAD is an Active Directory Privilege Escalation Framework

Language:PythonLicense:MITStargazers:1133Issues:0Issues:0

InternalAllTheThings

Active Directory and Internal Pentest Cheatsheets

Language:HTMLStargazers:771Issues:0Issues:0

obsidian-markmind

A mind map, outline for obsidian,It support mobile and desktop

Stargazers:753Issues:0Issues:0