kharaone's starred repositories

axiom

The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf, masscan, nuclei, meg and many more!

Language:ShellLicense:MITStargazers:4000Issues:89Issues:427

hackerone-reports

Top disclosed reports from HackerOne

awesome-burp-extensions

A curated list of amazingly awesome Burp Extensions

weird_proxies

Reverse proxies cheatsheet

Galaxy-Bugbounty-Checklist

Tips and Tutorials for Bug Bounty and also Penetration Tests.

imagejs

Small tool to package javascript into a valid image file.

Language:CLicense:GPL-3.0Stargazers:898Issues:37Issues:11

AllVideoPocsFromHackerOne

This script grab public report from hacker one and make some folders with poc videos

JSONBee

A ready to use JSONP endpoints/payloads to help bypass content security policy (CSP) of different websites.

Language:PHPLicense:GPL-3.0Stargazers:661Issues:20Issues:2

socialhunter

crawls the website and finds broken social media links that can be hijacked

Language:GoLicense:MITStargazers:658Issues:14Issues:8

BChecks

BChecks collection for Burp Suite Professional and Burp Suite Enterprise Edition

Spoofy

Spoofy is a program that checks if a list of domains can be spoofed based on SPF and DMARC records.

Language:PythonLicense:CC0-1.0Stargazers:617Issues:10Issues:5

gato

GitHub Actions Pipeline Enumeration and Attack Tool

Language:PythonLicense:Apache-2.0Stargazers:539Issues:8Issues:26

IIS-Raid

A native backdoor module for Microsoft IIS (Internet Information Services)

Language:C++License:Apache-2.0Stargazers:530Issues:16Issues:8

collaborator-everywhere

A Burp Suite Pro extension which augments your proxy traffic by injecting non-invasive headers designed to reveal backend systems by causing pingbacks to Burp Collaborator

csprecon

Discover new target domains using Content Security Policy

Language:GoLicense:MITStargazers:365Issues:6Issues:9

urldedupe

Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations

Language:C++License:MITStargazers:331Issues:6Issues:8

missing-cve-nuclei-templates

Weekly updated list of missing CVEs in nuclei templates official repository. Mainly built for bug bounty, but useful for penetration tests and vulnerability assessments too.

Language:ShellLicense:MITStargazers:324Issues:10Issues:7

cloudflare-origin-ip

Try to find the origin IP of a webapp protected by Cloudflare.

Language:PythonLicense:MITStargazers:320Issues:4Issues:13

wraith

Uncover forgotten secrets and bring them back to life, haunting security and operations teams.

Language:GoLicense:MITStargazers:206Issues:11Issues:98

pwnhub

How GitHub Actions workflows can be hacked

Language:ShellLicense:GPL-3.0Stargazers:101Issues:7Issues:2

Subdominator

SubDominator helps you discover subdomains associated with a target domain efficiently and with minimal impact for your Bug Bounty

Language:PythonLicense:MITStargazers:101Issues:1Issues:2

Elevate

Horizontal Domain Discovery

gfx

A wrapper around grep, to help you grep for things! - Improved version of gf by @tomnomnom.

Language:GoLicense:MITStargazers:61Issues:2Issues:1

orgs-data

Mapping from bug bounty and vulnerability disclosure programs to respective GitHub organizations

Snaike-MLflow

MLflow red team toolsuite

Language:PythonLicense:Apache-2.0Stargazers:39Issues:3Issues:0

shortnameguesser

A tool to guess the rest of the shortnames provided by vulnerable IIS instances.

Language:PythonStargazers:32Issues:4Issues:0

burp2caido

A tool to migrate Burpsuite HTTP history to Caido.

Language:GoLicense:MITStargazers:27Issues:1Issues:1

BOR

BOR - Break On Request, is a burp extension that provides a custom context menu for marking requests to be stopped by the interceptor with only one click!

Language:JavaStargazers:13Issues:3Issues:0

scopy

Filter URLs that match your scope file for bugbounty.

Language:PythonStargazers:10Issues:1Issues:0