ᅟ (payloadartist)

payloadartist

Geek Repo

Company:

Location:

Home Page:https://www.bugbountyhunting.com

Twitter:@payloadartist

Github PK Tool:Github PK Tool


Organizations
BugBountyResources

's starred repositories

my-arsenal-of-aws-security-tools

List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.

Language:ShellLicense:Apache-2.0Stargazers:8842Issues:393Issues:33

ddosify

Effortless Kubernetes Monitoring and Performance Testing. Available on CLI, Self-Hosted, and Cloud

Language:GoLicense:AGPL-3.0Stargazers:8194Issues:60Issues:55

foundry

Foundry is a blazing fast, portable and modular toolkit for Ethereum application development written in Rust.

Language:RustLicense:Apache-2.0Stargazers:7966Issues:75Issues:4032

DeFiHackLabs

Reproduce DeFi hacked incidents using Foundry.

SynapseML

Simple and Distributed Machine Learning

Language:ScalaLicense:MITStargazers:5026Issues:145Issues:717

merlin

Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.

Language:GoLicense:GPL-3.0Stargazers:5006Issues:139Issues:103

subbrute

A DNS meta-query spider that enumerates DNS records, and subdomains.

Language:PythonLicense:GPL-3.0Stargazers:3309Issues:131Issues:56

teler

Real-time HTTP Intrusion Detection

Language:GoLicense:Apache-2.0Stargazers:2983Issues:51Issues:69

stratus-red-team

:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud

Language:GoLicense:Apache-2.0Stargazers:1695Issues:33Issues:175

container-security-checklist

Checklist for container security - devsecops practices

MFASweep

A tool for checking if MFA is enabled on multiple Microsoft Services

Language:PowerShellLicense:MITStargazers:1245Issues:25Issues:8

terragoat

TerraGoat is Bridgecrew's "Vulnerable by Design" Terraform repository. TerraGoat is a learning and training project that demonstrates how common configuration errors can find their way into production cloud environments.

Language:HCLLicense:Apache-2.0Stargazers:1126Issues:23Issues:2

Windows10Exploits

Microsoft » Windows 10 : Security Vulnerabilities

solidity-book

The Senior Solidity Engineer's Book is a resource meant to transform you into a Senior Solidity Engineer.

dnsgen

Generates combination of domain names from the provided input.

Language:PythonLicense:MITStargazers:818Issues:23Issues:13

NotQuite0DayFriday

This is a repo which documents real bugs in real software to illustrate trends, learn how to prevent or find them more quickly.

Language:PythonLicense:NOASSERTIONStargazers:794Issues:70Issues:3

sast-scan

Scan is a free & Open Source DevSecOps tool for performing static analysis based security testing of your applications and its dependencies. CI and Git friendly.

Language:PythonLicense:Apache-2.0Stargazers:787Issues:31Issues:125

DSP

A Microservices-based framework for the study of Network Security and Penetration Test techniques

Language:JavaScriptLicense:MITStargazers:568Issues:30Issues:59

api-firewall

Fast and light-weight API proxy firewall for request and response validation by OpenAPI specs.

Language:GoLicense:MPL-2.0Stargazers:566Issues:23Issues:27

android-kernel-exploitation

Android Kernel Exploitation

Language:C++License:GPL-3.0Stargazers:563Issues:23Issues:11

kubernetes-security-checklist

Kubernetes Security Checklist and Requirements - All in One (authentication, authorization, logging, secrets, configuration, network, workloads, dockerfile)

PhishAPI

Comprehensive Web Based Phishing Suite for Rapid Deployment and Real-Time Alerting!

AutoSUID

AutoSUID application is the Open-Source project, the main idea of which is to automate harvesting the SUID executable files and to find a way for further escalating the privileges.

Language:ShellLicense:GPL-3.0Stargazers:366Issues:9Issues:0

Contracts

A small collection of potentially useful contract templates

cve_monitor

Automatic monitor github cve using Github Actions

BugBountyReportTemplates

List of reporting templates I have used since I started doing BBH.

Next.js-Flat-Prototype-Pollution

Prototype Pollution using `flat` with Next.js

hakfindinternaldomains

Feed it a list of subdomains, it will resolve them and tell you which ones are internal

Language:GoStargazers:92Issues:6Issues:0

Defi-Hack-Analysis-POC

A curated list of major DeFi hacks along with their POCs in foundry

Language:SolidityStargazers:77Issues:1Issues:0

Abused-Legitimate-Services

Cloud, CDN, and marketing services leveraged by cybercriminals and APT groups