sniper4u2 / Web_Hacking

Bug Bounty Tricks and useful payloads and bypasses for Web Application Security.

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Web Hacking + Bug Bounty Tricks

5829442

These are my Bug Bounty / Pentest notes that I have gathered from various sources.

You can also contribute.

Twitter URL

List of Vulnerabilities

Bypass Techniques

Recon & OSINT Techniques

Cloud / Docker

Top Tools & Extensions

  • inql - Burp extension for advanced GraphQL testing
  • Logger++ - Burp extension, a multithreaded logging extension for Burp Suit
  • param-miner - Burp extension, identifies hidden, unlinked parameters
  • Oralyzer - a simple python script that probes for Open Redirection vulnerability in a website
  • SQLiPy Sqlmap Integration - SQLiPy is a Python plugin for Burp Suite that integrates SQLMap using the SQLMap API
  • ParamSpider - Parameter miner for humans
  • gf - A wrapper around grep to avoid typing common patterns

Mindmaps for Bug Hunters

Red Team Attacks

Secure Coding


All content of this repository will always be updated...

About

Bug Bounty Tricks and useful payloads and bypasses for Web Application Security.