mud1t's starred repositories

Popular-Site-Subdomains

A list of subdomains for some of the most popular sites on the internet

License:MITStargazers:167Issues:0Issues:0

virtual-host-discovery

A script to enumerate virtual hosts on a server.

Language:RubyStargazers:649Issues:0Issues:0

h1-212-ctf-solutions

A collection of the solutions people wrote for the H1-212 Capture The Flag event

Stargazers:94Issues:0Issues:0
Language:JavaLicense:GPL-3.0Stargazers:70Issues:0Issues:0

pentest-tools

A collection of custom security tools for quick needs.

Language:PythonStargazers:3093Issues:0Issues:0

awesome-web-storage

:sunglasses: Everything you need to know about Client-side Storage.

Stargazers:439Issues:0Issues:0

xvwa

XVWA is a badly coded web application written in PHP/MySQL that helps security enthusiasts to learn application security.

Language:PHPLicense:GPL-3.0Stargazers:1672Issues:0Issues:0

ezXSS

ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.

Language:PHPLicense:MITStargazers:1824Issues:0Issues:0

reflector

Burp plugin able to find reflected XSS on page in real-time while browsing on site

Language:JavaStargazers:1100Issues:0Issues:0

xss.swf

a tiny tool for swf hacking, just browse it:)

Stargazers:234Issues:0Issues:0

aquatone

A Tool for Domain Flyovers

Language:GoLicense:MITStargazers:5555Issues:0Issues:0

Useful_Websites_For_Pentester

This repository is to make life of the pentester easy as it is a collection of the websites that can be used by pentesters for day to day studies and to remain updated.

Stargazers:344Issues:0Issues:0

LocalNetworkScanner

PoC Javascript that scans your local network when you open a webpage

Language:HTMLStargazers:157Issues:0Issues:0

bugbounty-cheatsheet

A list of interesting payloads, tips and tricks for bug bounty hunters.

License:CC-BY-SA-4.0Stargazers:5662Issues:0Issues:0

struts-pwn_CVE-2017-9805

An exploit for Apache Struts CVE-2017-9805

Language:PythonLicense:MITStargazers:250Issues:0Issues:0

LinkFinder

A python script that finds endpoints in JavaScript files

Language:PythonLicense:MITStargazers:3573Issues:0Issues:0

bfac

BFAC (Backup File Artifacts Checker): An automated tool that checks for backup artifacts that may disclose the web-application's source code.

Language:PythonLicense:GPL-3.0Stargazers:523Issues:0Issues:0

tools-tbhm

Tools of "The Bug Hunters Methodology V2 by @jhaddix"

Language:ShellStargazers:193Issues:0Issues:0

tbhm

The Bug Hunters Methodology

Stargazers:3814Issues:0Issues:0

AWSBucketDump

Security Tool to Look For Interesting Files in S3 Buckets

Language:PythonLicense:MITStargazers:1340Issues:0Issues:0
Language:RubyStargazers:499Issues:0Issues:0

parameth

This tool can be used to brute discover GET and POST parameters

Language:PythonStargazers:1333Issues:0Issues:0

owasp-mastg

The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the controls listed in the OWASP Mobile Application Security Verification Standard (MASVS).

Language:PythonLicense:CC-BY-SA-4.0Stargazers:11457Issues:0Issues:0

android_app_security_checklist

Android App Security Checklist

Stargazers:842Issues:0Issues:0
Language:JavaScriptLicense:NOASSERTIONStargazers:314Issues:0Issues:0

bosh-cred-and-port-scan

Scripts to scan BOSH directors for open ports and default credentials.

Language:RubyLicense:BSD-2-ClauseStargazers:4Issues:0Issues:0

awesome-threat-intelligence

A curated list of Awesome Threat Intelligence resources

License:Apache-2.0Stargazers:7642Issues:0Issues:0

awesome-web-security

🐶 A curated list of Web Security materials and resources.

Stargazers:11077Issues:0Issues:0

tplmap

Server-Side Template Injection and Code Injection Detection and Exploitation Tool

Language:PythonLicense:GPL-3.0Stargazers:3685Issues:0Issues:0

wpsploit

WPSploit - Exploiting Wordpress With Metasploit

Language:RubyLicense:MITStargazers:214Issues:0Issues:0