Ronny Xavier's starred repositories

You-Dont-Know-JS

A book series on JavaScript. @YDKJS on twitter.

SecLists

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.

ImHex

🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.

Language:C++License:GPL-2.0Stargazers:44016Issues:475Issues:1171

Depix

Recovers passwords from pixelized screenshots

Language:PythonLicense:NOASSERTIONStargazers:25884Issues:396Issues:0

theZoo

A repository of LIVE malwares for your own joy and pleasure. theZoo is a project created to make the possibility of malware analysis open and available to the public.

Language:PythonLicense:NOASSERTIONStargazers:11209Issues:811Issues:154

Reverse-Engineering

A FREE comprehensive reverse engineering tutorial covering x86, x64, 32-bit/64-bit ARM and embedded RISC-V architectures.

Language:AssemblyLicense:Apache-2.0Stargazers:11062Issues:293Issues:0

HowToHunt

Collection of methodology and test case for various web vulnerabilities.

goproxy

An HTTP proxy library for Go

Language:GoLicense:BSD-3-ClauseStargazers:6009Issues:158Issues:349

bugbounty-cheatsheet

A list of interesting payloads, tips and tricks for bug bounty hunters.

cuckoo

Cuckoo Sandbox is an automated dynamic malware analysis system

Language:JavaScriptLicense:NOASSERTIONStargazers:5540Issues:436Issues:2392

can-i-take-over-xyz

"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.

Language:PythonLicense:CC-BY-4.0Stargazers:4782Issues:127Issues:236

shadowbroker

The Shadow Brokers "Lost In Translation" leak

builderbook

Open source web application to learn JS stack: React, Material-UI, Next.js, Node.js, Express.js, Mongoose, MongoDB database.

Language:JavaScriptLicense:MITStargazers:3765Issues:99Issues:302

proxify

A versatile and portable proxy for capturing, manipulating, and replaying HTTP/HTTPS traffic on the go.

My-CTF-Web-Challenges

Collection of CTF Web challenges I made

RE-iOS-Apps

A completely free, open source and online course about Reverse Engineering iOS Applications.

fibratus

Adversary tradecraft detection, protection, and hunting

Language:GoLicense:NOASSERTIONStargazers:2208Issues:71Issues:78

pefile

pefile is a Python module to read and work with PE (Portable Executable) files

Language:PythonLicense:MITStargazers:1864Issues:81Issues:246

XSSChallengeWiki

Welcome to the XSS Challenge Wiki!

Coldfire

Golang malware development library

Language:GoLicense:MITStargazers:929Issues:27Issues:13

PoC

Advisories, proof of concept files and exploits that have been made public by @pedrib.

Language:RubyLicense:GPL-3.0Stargazers:813Issues:50Issues:8

Facebook-BugBounty-Writeups

Collection of Facebook Bug Bounty Writeups

webscan

Browser-based network scanner & local-IP detection

freki

:wolf: Malware analysis platform

Language:YARALicense:AGPL-3.0Stargazers:420Issues:24Issues:9

bucky

Bucky (An automatic S3 bucket discovery tool)

memexec

A library for loading and executing PE (Portable Executable) from memory without ever touching the disk

Language:RustLicense:GPL-3.0Stargazers:126Issues:2Issues:6

CVE-2018-11235-Git-Submodule-CE

CVE-2018-11235-Git PoC

Language:DockerfileStargazers:2Issues:2Issues:0