Subhash (subhash0x)

subhash0x

Geek Repo

Company:BugClaim

Location:Mars

Home Page:127.0.0.1

Twitter:@Subhash_0x

Github PK Tool:Github PK Tool


Organizations
BugClaim
CybSec-NITW

Subhash's repositories

SecLists

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.

License:MITStargazers:1Issues:0Issues:0

chrome_password_grabber

Get unencrypted 'Saved Password' from Google Chrome

License:GPL-3.0Stargazers:0Issues:0Issues:0

jok3r

Jok3r v3 BETA 2 - Network and Web Pentest Automation Framework

License:NOASSERTIONStargazers:0Issues:0Issues:0

RsaCtfTool

RSA attack tool (mainly for ctf) - retreive private key from weak public key and/or uncipher data

License:NOASSERTIONStargazers:0Issues:0Issues:0

FileChangeMonitor

Continuous monitoring for JavaScript files

Stargazers:0Issues:0Issues:0

quick-portfolio

Use this template if you need a quick developer / data science portfolio! Based on a Minimal Jekyll theme for GitHub Pages.

License:UnlicenseStargazers:0Issues:0Issues:0

AhMyth-Android-RAT

Android Remote Administration Tool

License:GPL-3.0Stargazers:1Issues:0Issues:0
Language:CSSStargazers:0Issues:0Issues:0

BugBounty-reports-templates

My small collection of reports templates

Stargazers:74Issues:0Issues:0

Zoom

Automatic & lightning fast wordpress vulnerability scanner

License:GPL-3.0Stargazers:0Issues:0Issues:0

graphql-security-labs

GraphQL security workshop labs

Stargazers:0Issues:0Issues:0

See-SURF

Python based scanner to find potential SSRF parameters

License:GPL-3.0Stargazers:0Issues:0Issues:0

extended-xss-search

A better version of my xssfinder tool - scans for different types of xss on a list of urls.

Stargazers:0Issues:0Issues:0

CTFd

CTFs as you need them

License:Apache-2.0Stargazers:0Issues:0Issues:0

statement

idea for codefundo

Stargazers:0Issues:0Issues:0
Stargazers:0Issues:0Issues:0

MARA_Framework

MARA is a Mobile Application Reverse engineering and Analysis Framework. It is a toolkit that puts together commonly used mobile application reverse engineering and analysis tools to assist in testing mobile applications against the OWASP mobile security threats.

License:LGPL-3.0Stargazers:0Issues:0Issues:0

Tiny-PHP-Webshell

several list of simple and obfuscate PHP shell

Stargazers:0Issues:0Issues:0
License:Apache-2.0Stargazers:0Issues:0Issues:0

knoxss

People have the right to see this ugly spaghetti code, skids.

Stargazers:1Issues:0Issues:0
Language:PHPStargazers:0Issues:0Issues:0

NITW-DOX

Document sharing hub

Language:PHPStargazers:0Issues:0Issues:0

Bypass-Web-Application-Firewalls

Bypassing-Web-Application-Firewalls-And-XSS-Filters A series of python scripts for generating weird character combinations and lists for BurpSuite Pro for bypassing web application firewalls (WAF) and XSS filters. These python scripts have been created to fuzz wierd combinations: URL Escape Characters HTML Escape Characters Binary Characters These scripts were created during an assessment, while trying to bypass a Web Application Firewall (WAF) in order to exploit a XSS vulnerability. Differnt webservers and browsers interpret URL and strange characters differently which could lead to the bypassing of security controls. When I tried to send a > or < character the WAF would block the request. The following URL escapes I have noticed are traslated to < > ' by Apache2 based web servers: %(N%(n%)S%)U%)^%)s%)u%*C%*E%*c%*e%,.%.#%1N%1n%2S%2U%2^%2s%2u%3C%3E%3c%3e%5.%7#%:C%:E %:c%:e%HN%Hn%IS%IU%I^%Is%Iu%JC%JE%Jc%Je%L.%N#%XN%Xn%YS%YU%Y^%Ys%Yu%ZC%ZE%Zc%Ze%.%^# %hN%hn%iS%iU%i^%is%iu%jC%jE%jc%je%l.%n#%xN%xn%yS%yU%y^%ys%yu%zC%zE%zc%ze%|

Stargazers:1Issues:0Issues:0
Language:PythonStargazers:0Issues:0Issues:0

wow

django

Language:PythonStargazers:0Issues:0Issues:0

unfurl

Pull out bits of URLs provided on stdin

License:MITStargazers:0Issues:0Issues:0

masscan

TCP port scanner, spews SYN packets asynchronously, scanning entire Internet in under 5 minutes.

License:NOASSERTIONStargazers:0Issues:0Issues:0
Language:CSSStargazers:0Issues:0Issues:0
Language:HTMLStargazers:0Issues:0Issues:0

ShubhamWebScript-Website-vulnerability-Checker

Find any website vulnerability and bugs in few second.

License:GPL-3.0Stargazers:0Issues:0Issues:0