Hossein Shourabi 's starred repositories

unredacter

Never ever ever use pixelation as a redaction technique

Language:TypeScriptLicense:GPL-3.0Stargazers:7776Issues:70Issues:29

dnstwist

Domain name permutation engine for detecting homograph phishing attacks, typo squatting, and brand impersonation

Language:PythonLicense:Apache-2.0Stargazers:4897Issues:155Issues:123

BITB

Browser In The Browser (BITB) Templates

Language:JavaScriptStargazers:2769Issues:57Issues:0

subjack

Subdomain Takeover tool written in Go

Language:GoLicense:Apache-2.0Stargazers:1909Issues:48Issues:63

warp-plus

Warp+Psiphon, an anti censorship utility for iran

urlhunter

a recon tool that allows searching on URLs that are exposed via shortener services

Language:GoLicense:MITStargazers:1510Issues:64Issues:13

XSRFProbe

The Prime Cross Site Request Forgery (CSRF) Audit and Exploitation Toolkit.

Language:PythonLicense:GPL-3.0Stargazers:1106Issues:37Issues:34

JSFScan.sh

Automation for javascript recon in bug bounty.

Telerecon

A reconnaissance framework for researching and investigating Telegram.

GoogleRecaptchaBypass

Solve Google reCAPTCHA in less than 5 seconds! 🚀

Artemis

A modular vulnerability scanner with automatic report generation capabilities.

Language:PythonLicense:BSD-3-ClauseStargazers:558Issues:17Issues:106

domloggerpp

A browser extension that allows you to monitor, intercept, and debug JavaScript sinks based on customizable configurations.

Language:JavaScriptLicense:GPL-3.0Stargazers:456Issues:8Issues:19

mojocss

The Atomic CSS Framework for crafting gorgeous UIs without shipping any CSS.

Language:JavaScriptLicense:MITStargazers:437Issues:9Issues:15

gifoeb

exploit for ImageMagick's uninitialized memory disclosure in gif coder

fallparams

Find All Parameters - Tool to crawl pages, find potential parameters and generate a custom target parameter wordlist

Language:GoLicense:MITStargazers:239Issues:2Issues:6

wpgarlic

A proof-of-concept WordPress plugin fuzzer

Language:PythonLicense:MITStargazers:185Issues:10Issues:7

sign-saboteur

SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens

Language:JavaLicense:Apache-2.0Stargazers:138Issues:3Issues:5

mapperplus

MapperPlus facilitates the extraction of source code from a collection of targets that have publicly exposed .js.map files.

frida_rootandsslbypass

With this script you can bypass both root detection and ssl pinning for your android app.

Language:JavaScriptStargazers:83Issues:0Issues:2

knoxsser

A powerful bash script for massive XSS scanning leveraging Brute Logic's KNOXSS API

Language:ShellLicense:MITStargazers:58Issues:2Issues:4

caligo

SelfBot for Telegram

SourceCodeReview

Source Code Review resources for Bug Bounty Hunters & Developers. This Repo is updated consistently.

xsshunter-express

Archived Please go to https://github.com/adamjsturge/xsshunter-go

Language:SCSSLicense:MITStargazers:31Issues:0Issues:0

vulnerability-Checklist-farsi

چک‌لیست آسیب‌پذیری برای تست‌نفوذ و باگ‌هانتینگ

bulkDNS

buldDNS: A DNS scanner for large-scale measurement

Language:CLicense:MITStargazers:19Issues:1Issues:0

radio

9craft Radio

docker-php73

Docker image with SSL, Apache, and PHP 7.3. Can execute PHP files in the current directory.

Language:PHPLicense:MITStargazers:1Issues:0Issues:0

WP-PluginDownloader

WordPress Plugin Full Download Automation Program

Language:PythonLicense:MITStargazers:1Issues:1Issues:0