netwons's starred repositories

codon

A high-performance, zero-overhead, extensible Python compiler using LLVM

Language:C++License:NOASSERTIONStargazers:13945Issues:134Issues:396

xray

一款完善的安全评估工具,支持常见 web 安全问题扫描和自定义 poc | 使用之前务必先阅读文档

Language:VueLicense:NOASSERTIONStargazers:9874Issues:207Issues:445

AllAboutBugBounty

All about bug bounty (bypasses, payloads, and etc)

bounty-targets-data

This repo contains hourly-updated data dumps of bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) that are eligible for reports

License:MITStargazers:3028Issues:235Issues:0

OneListForAll

Rockyou for web fuzzing

wordlists

Real-world infosec wordlists, updated regularly

xnLinkFinder

A python tool used to discover endpoints, potential parameters, and a target specific wordlist for a given target

recollapse

REcollapse is a helper tool for black-box regex fuzzing to bypass validations and discover normalizations in web applications

Language:PythonLicense:MITStargazers:886Issues:14Issues:1

google-dorks

Useful Google Dorks for WebSecurity and Bug Bounty

cent

Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one place

Language:GoLicense:Apache-2.0Stargazers:820Issues:21Issues:31

hakoriginfinder

Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!

Nuclei-bug-hunter

i will upload more templates here to share with the comunity.

PPScan

Client Side Prototype Pollution Scanner

Language:JavaScriptLicense:MITStargazers:496Issues:18Issues:5

Logsensor

A Powerful Sensor Tool to discover login panels, and POST Form SQLi Scanning

Language:PythonLicense:GPL-3.0Stargazers:460Issues:10Issues:4

hakip2host

hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.

userefuzz

User-Agent , X-Forwarded-For and Referer SQLI Fuzzer

Language:PythonLicense:MITStargazers:366Issues:2Issues:14

the-nuclei-templates

Nuclei templates written by us.

ipcdn

Check which CDN providers an IP list belongs to

Language:GoLicense:MITStargazers:198Issues:5Issues:5

JS-Scan

a .js scanner, built in php. designed to scrape urls and other info

Language:CSSStargazers:198Issues:8Issues:0

plution

Prototype pollution scanner using headless chrome

crtndstry

Yet another subdomain finder

Backup-Finder

A burp suite extension that reviews backup, old, temporary and unreferenced files on web server for sensitive information (OWASP WSTG-CONF-04, OTG-CONFIG-004)

Language:JavaLicense:GPL-3.0Stargazers:148Issues:1Issues:3

slurp

A blazing fast & feature rich Amazon S3 bucket enumerator.

Language:GoLicense:GPL-3.0Stargazers:91Issues:2Issues:0

jakaton_feminicidios

Proyecto para el Jakaton. Intentamos descubirr si existe correlación entre el lenguaje violento contra las mujeres en twitter y el número de feminicidios en México.

Language:PythonLicense:MITStargazers:54Issues:2Issues:0

reverse-proxy

Configuring NGINX as Reverse Proxy

Parameter-Reflect-Finder

Parameter-Reflect-Finder is a python based tool that helps you find reflected parameters which can have potential XSS or Open redirection vulnerabilities.

Language:PythonStargazers:15Issues:1Issues:0

burp_extensions

Burp Suite Extensions

Language:PythonLicense:GPL-3.0Stargazers:12Issues:2Issues:1

Web-Security-Learning

Web-Security-Learning

Language:HTMLStargazers:1Issues:0Issues:0