sn1ks0h's starred repositories

Language:JavaScriptStargazers:74Issues:0Issues:0

awesome-bugbounty-tools

A curated list of various bug bounty tools

License:CC0-1.0Stargazers:4179Issues:0Issues:0

bounty-targets-data

This repo contains hourly-updated data dumps of bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) that are eligible for reports

License:MITStargazers:3148Issues:0Issues:0

bounty-targets

This project crawls bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) hourly and dumps them into the bounty-targets-data repo

Language:RubyLicense:MITStargazers:612Issues:0Issues:0

bountyplz

Automated security reporting from markdown templates (HackerOne and Bugcrowd are currently the platforms supported)

Language:ShellLicense:MITStargazers:442Issues:0Issues:0

h1domains

HackerOne "in scope" domains

Language:PythonStargazers:398Issues:0Issues:0

gpt-engineer

Platform to experiment with the AI Software Engineer. Terminal based. NOTE: Very different from https://gptengineer.app

Language:PythonLicense:MITStargazers:52251Issues:0Issues:0

jsluice

Extract URLs, paths, secrets, and other interesting bits from JavaScript

Language:GoLicense:MITStargazers:1407Issues:0Issues:0

get_schemas

Print out URL schemas from an Android app

Language:PythonStargazers:111Issues:0Issues:0

ShadowClone

Unleash the power of cloud

Language:PythonLicense:Apache-2.0Stargazers:729Issues:0Issues:0

houdini

Hundreds of Offensive and Useful Docker Images for Network Intrusion. The name says it all.

Language:TypeScriptLicense:GPL-3.0Stargazers:1206Issues:0Issues:0

CVE-2020-12800

POC Script for CVE-2020-12800: RCE through Unrestricted File Type Upload

Language:PythonStargazers:26Issues:0Issues:0

public-bugbounty-programs

Community curated list of public bug bounty and responsible disclosure programs.

Language:GoLicense:MITStargazers:1041Issues:0Issues:0

Blind-SSRF

Nuclei Templates to reproduce Cracking the lens's Research

Stargazers:121Issues:0Issues:0

opensshd_user_enumeration

OpenSSHD 7.2p2 - User Enumeration: CVE 2016-6210

Language:PythonStargazers:3Issues:0Issues:0

gau

Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.

Language:GoLicense:MITStargazers:3955Issues:0Issues:0

Sublist3r

Fast subdomains enumeration tool for penetration testers

Language:PythonLicense:GPL-2.0Stargazers:9828Issues:0Issues:0

OneListForAll

Rockyou for web fuzzing

Language:ShellStargazers:2592Issues:0Issues:0

reconftw

reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities

Language:ShellLicense:MITStargazers:5693Issues:0Issues:0

bbrf-client

The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices

Language:PythonLicense:MITStargazers:611Issues:0Issues:0

fresh-resolvers

List of fresh DNS resolvers updated daily

Stargazers:106Issues:0Issues:0

nuclei

Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.

Language:GoLicense:MITStargazers:20471Issues:0Issues:0

nuclei-templates

Community curated list of templates for the nuclei engine to find security vulnerabilities.

Language:JavaScriptLicense:MITStargazers:9223Issues:0Issues:0

SecLists

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.

Language:PHPLicense:MITStargazers:58144Issues:0Issues:0

axiom

The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf, masscan, nuclei, meg and many more!

Language:ShellLicense:MITStargazers:4037Issues:0Issues:0

amass

In-depth attack surface mapping and asset discovery

Language:GoLicense:NOASSERTIONStargazers:11989Issues:0Issues:0

subscraper

Subdomain and target enumeration tool built for offensive security testing

Language:PythonLicense:GPL-3.0Stargazers:816Issues:0Issues:0

PayloadsAllTheThings

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Language:PythonLicense:MITStargazers:60987Issues:0Issues:0