attacker-codeninja's starred repositories

Awesome-GPT-Agents

A curated list of GPT agents for cybersecurity

Damn-Vulnerable-RESTaurant-API-Game

Damn Vulnerable Restaurant is an intentionally vulnerable Web API game for learning and training purposes dedicated to developers, ethical hackers and security engineers.

Language:PythonLicense:GPL-3.0Stargazers:380Issues:10Issues:3

misconfig-mapper

Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services used by your company and/or bug bounty targets!

Language:GoLicense:MITStargazers:257Issues:7Issues:3

Security_Architect_and_Principal_Security_Engineer_Interview_Questions

This is a companion to the Security Engineer Questions

llm-security-101

Delving into the Realm of LLM Security: An Exploration of Offensive and Defensive Tools, Unveiling Their Present Capabilities.

handouts

materials we hand out

Language:PythonStargazers:117Issues:15Issues:0

toxicache

Go scanner to find web cache poisoning vulnerabilities in a list of URLs

AHHHZURE

AHHHZURE is an automated deployment script that creates a vulnerable Azure cloud lab for offensive security practitioners and enthusiasts to brush up their cloud sec skills.

Language:PowerShellLicense:GPL-3.0Stargazers:86Issues:1Issues:0

bug-bounties

⚔️ A compiled list of companies who have active programs for responsible disclosure

Language:SvelteLicense:MITStargazers:70Issues:2Issues:1

MyNotes

My notes from courses,books ..etc

appsec-challenges

This repo contains the code for my appsec challenges

Language:JavaStargazers:36Issues:4Issues:0

CertStream-Domains

[Automated | UpToDate] Daily Dumps of CertStream Certificate Logs Subdomains Data (SAN || CN)

Wordlists

[Custom || Automated] Curation & Collection of BugBounty Wordlists

security-engineer-interview-collection

FAANG (MANGA) Security Engineer Interview Collection. An ongoing & curated collection of awesome software, frameworks and libraries, learning tutorials and videos, technical guidelines and best practices, and cheatsheets in the world of Security Engineering Career.

License:MITStargazers:21Issues:2Issues:0

DVAPI

Damn Vulnerable API

Trishul

The Ultimate Recon Framework

Language:ShellStargazers:11Issues:0Issues:0

RealWorldCodeReview

Security code review challenges that are based on real life vulnerabilities found on open source software.

Language:PHPStargazers:8Issues:0Issues:0

Payloads_Tool_box

At this repo you can find any tools, tricks or templates for general penetration testing assesment

Stargazers:6Issues:0Issues:0

web-cache-deception

Vulnerable application to web cache deception

Language:PHPStargazers:4Issues:0Issues:0

reports-summary

A sensible no bullshit repo of summaries of reports on hackerone, bugcrowd and alike, that makes straight up sense and make it easy to repeat and automate. This is supposed to serve as my personal reference, but should be a good public index reference for like minded.

License:GPL-3.0Stargazers:3Issues:1Issues:0

Application-Security-Engineer-Interview-Questions

Interview questions I have encounterd for AppSec Engineers

License:Apache-2.0Stargazers:3Issues:0Issues:0

H4cks

Repository containing various vulnerable lab & scripts for security researchs.

Language:JavaScriptLicense:GPL-3.0Stargazers:2Issues:1Issues:0

Security-Interview-Notes

A list of topics to prepare for Security Engineer Interviews

Language:HTMLStargazers:2Issues:0Issues:0

Information-Security-Audit-Interview-Questions

Conduact an interview in a audit department for the of information security engineer.

Stargazers:1Issues:0Issues:0

Security-Engineer_Interview_Questions

The repository is to help security engineers with interview questions

Stargazers:1Issues:0Issues:0

ssrf_checklist

List of SSRF vectors

security-job-interview

organizing security engineer job interview questions and answers

Stargazers:1Issues:0Issues:0

xss_postMessage_vuln_lab

lab for xss and postMessage vulnerability

Language:TypeScriptStargazers:1Issues:0Issues:0