Srikanth Reddy's repositories
PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
About-Me
Build a Jekyll blog in minutes, without touching the command line.
Arjun
HTTP parameter discovery suite.
AutoRecon
AutoRecon is a multi-threaded network reconnaissance tool which performs automated enumeration of services.
Awesome-Bugbounty-Writeups
A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference
dirsearch
Web path scanner
dvta
Damn Vulnerable Thick Client App developed in C# .NET
DVWA
Damn Vulnerable Web Application (DVWA)
ffuf
Fast web fuzzer written in Go
HowToHunt
Tutorials and Things to Do while Hunting Vulnerability.
httprebind
Automatic tool for DNS rebinding-based SSRF attacks
javascript-algorithms
📝 Algorithms and data structures implemented in JavaScript with explanations and links to further readings
Jwt-code
Python code for generating a signature for Json Web Tokens
jwt-lab
Lab for learning JWT.
kubernetes-goat
Kubernetes Goat is "Vulnerable by Design" Kubernetes Cluster.
mathjs
An extensive math library for JavaScript and Node.js
MemLabs
Educational, CTF-styled labs for individuals interested in Memory Forensics
Mobile-Security-Framework-MobSF
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
nuclei
Nuclei is a fast tool for configurable targeted scanning based on templates offering massive extensibility and ease of use.
OneForAll
OneForAll是一款功能强大的子域收集工具
postMessage-tracker
A Chrome Extension to track postMessage usage (url, domain and stack) both by logging using CORS and also visually as an extension-icon
Privilege-Escalation
This cheasheet is aimed at the CTF Players and Beginners to help them understand the fundamentals of Privilege Escalation with examples.
rengine
A simple recon engine for penetration testing
sri222149
Config files for my GitHub profile.
subfinder
Subfinder is a subdomain discovery tool that discovers valid subdomains for websites. Designed as a passive framework to be useful for bug bounties and safe for penetration testing.
vapi
vAPI is a Vulnerable Adversely Programmed Interface which is Self-Hostable PHP Interface that demonstrates OWASP API Top 10 in the means of Exercises.
WebGoat
WebGoat is a deliberately insecure application
wfuzz
Web application fuzzer