Prabhakar's starred repositories

awesome-pentest

A collection of awesome penetration testing resources, tools and other shiny things

awesome-osint

:scream: A curated list of amazingly awesome OSINT

aws-cli

Universal Command Line Interface for Amazon Web Services

Language:PythonLicense:NOASSERTIONStargazers:15003Issues:573Issues:4503

awesome-security

A collection of awesome software, libraries, documents, books, resources and cools stuffs about security.

owasp-mastg

The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the controls listed in the OWASP Mobile Application Security Verification Standard (MASVS).

Language:PythonLicense:CC-BY-SA-4.0Stargazers:11371Issues:435Issues:946

awesome-incident-response

A curated list of tools for incident response

awesome-infosec

A curated list of awesome infosec courses and training resources.

bug-bounty-reference

Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature

EVTX-ATTACK-SAMPLES

Windows Events Attack Samples

Language:HTMLLicense:GPL-3.0Stargazers:2145Issues:144Issues:11

broken-link-checker

Find broken links, missing images, etc within your HTML.

Language:JavaScriptLicense:MITStargazers:1905Issues:37Issues:179

awesome-cyber-security

A collection of awesome software, libraries, documents, books, resources and cools stuffs about security.

InstagramOSINT

An Instagram Open Source Intelligence Tool - Archive

Language:PythonLicense:MITStargazers:1201Issues:60Issues:16

golismero

GoLismero - The Web Knife

Language:PythonLicense:GPL-2.0Stargazers:856Issues:86Issues:45

SQLiScanner

Automatic SQL injection with Charles and sqlmap api

Language:PythonLicense:GPL-3.0Stargazers:784Issues:34Issues:28

subscraper

Subdomain and target enumeration tool built for offensive security testing

Language:PythonLicense:GPL-3.0Stargazers:747Issues:28Issues:9

JSONBee

A ready to use JSONP endpoints/payloads to help bypass content security policy (CSP) of different websites.

Language:PHPLicense:GPL-3.0Stargazers:626Issues:20Issues:2

GTRS

GTRS - Google Translator Reverse Shell

Language:GoStargazers:615Issues:21Issues:0

ail-framework

AIL framework - Analysis Information Leak framework

Language:PythonLicense:AGPL-3.0Stargazers:515Issues:27Issues:182

dvws

Damn Vulnerable Web Services is an insecure web application with multiple vulnerable web service components that can be used to learn real world web service vulnerabilities. NOTE: This project is out of date, please use https://github.com/snoopysecurity/dvws-node

Language:PHPLicense:Apache-2.0Stargazers:451Issues:22Issues:7

WAF-bypass-Cheat-Sheet

Another way to bypass WAF Cheat Sheet (draft)

xcat

XPath injection tool

Language:PythonLicense:MITStargazers:355Issues:18Issues:27

zBang

zBang is a risk assessment tool that detects potential privileged account threats

Language:C#License:MITStargazers:321Issues:22Issues:8

sh00t

Security Testing is not as simple as right click > Scan. It's messy, a tough game. What if you had missed to test just that one thing and had to regret later? Sh00t is a highly customizable, intelligent platform that understands the life of bug hunters and emphasizes on manual security testing.

Language:JavaScriptLicense:Apache-2.0Stargazers:269Issues:23Issues:21

twitterBFTD

Twitter Back From The Dead looks in a user tweets history for domain names that are available for registration

XSSFuzzer

XSS Fuzzer is a tool which generates XSS payloads based on user-defined vectors and fuzzing lists.

Language:HTMLStargazers:136Issues:10Issues:0

bounty-domains

List of domains in scope for bug bounties (HackerOne, Bugcrowd, etc.)

waybacktool

A tool to fetch and verify the existence of endpoints from the Wayback Machine API.

Language:PythonStargazers:50Issues:4Issues:0

xsspwn

Cross-Site-Scripting (XSS) Automatic Scanner

Cybersecurity_Mindmaps

Repository of cybersecurity mindmaps