Tamim Hasan (tamimhasan404)

tamimhasan404

Geek Repo

Company:Independent

Location:Bangladesh

Home Page:https://www.youtube.com/c/HackoMedia404

Twitter:@tamimhasan404

Github PK Tool:Github PK Tool

Tamim Hasan's starred repositories

CheatSheetSeries

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

Language:PythonLicense:CC-BY-SA-4.0Stargazers:26886Issues:571Issues:429

vulhub

Pre-Built Vulnerable Environments Based on Docker-Compose

Language:DockerfileLicense:MITStargazers:16734Issues:571Issues:175

hacktricks

Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.

Language:PythonLicense:NOASSERTIONStargazers:8045Issues:216Issues:73

cve

Gather and update all available and newest CVEs with their PoC.

Language:HTMLLicense:MITStargazers:6198Issues:322Issues:50

Awesome-Fuzzing

A curated list of fuzzing resources ( Books, courses - free and paid, videos, tools, tutorials and vulnerable applications to practice on ) for learning Fuzzing and initial phases of Exploit Development like root cause analysis.

bounty-targets-data

This repo contains hourly-updated data dumps of bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) that are eligible for reports

License:MITStargazers:3014Issues:235Issues:0

SmartProxy

Firefox/Chrome browser extension. SmartProxy will automatically enable/disable proxy for the sites you visit, based on customizable patterns.

Language:TypeScriptLicense:GPL-3.0Stargazers:1690Issues:21Issues:318

inventory

Asset inventory of over 800 public bug bounty programs.

Language:ShellLicense:MITStargazers:1141Issues:50Issues:6

Bug-Bounty-Wordlists

A repository that includes all the important wordlists used while bug hunting.

NucleiFuzzer

NucleiFuzzer is a Powerful Automation tool for detecting XSS, SQLi, SSRF, Open-Redirect, etc.. Vulnerabilities in Web Applications

public-bugbounty-programs

Community curated list of public bug bounty and responsible disclosure programs.

Language:GoLicense:MITStargazers:983Issues:50Issues:25

image-upload-exploits

This repository contains various media files for known attacks on web applications processing media files. Useful for penetration tests and bug bounty.

Language:PostScriptStargazers:298Issues:6Issues:0

hijagger

Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration

Language:GoLicense:GPL-3.0Stargazers:275Issues:4Issues:0

pocsploit

a lightweight, flexible and novel open source poc verification framework

Language:PythonLicense:MITStargazers:234Issues:6Issues:7

public-reports

bug bounty disclosed reports

DSJS

Damn Small JS Scanner

Language:PythonStargazers:102Issues:15Issues:0

hack-your-government

A list of governments with Vulnerability Disclosure Policies

wp-update-confusion

WordPress Plugin Update Confusion

Language:PythonStargazers:67Issues:2Issues:0

BugBountySubdomains

Tools to gather subdomains from Bug Bounty programs

Language:PythonStargazers:63Issues:5Issues:0

hack-your-university

A list of universities with vulnerability disclosure policies

vdp-in-fceb

Vulnerability disclosure policies in the US Government's executive branch

License:CC0-1.0Stargazers:37Issues:7Issues:0

websitewatcher

Monitor websites for changes

Language:GoLicense:GPL-3.0Stargazers:19Issues:3Issues:1

Subdisco

Subdisco is a tool designed in java and uses OSINT in order to enumerate subdomains of websites.

Language:JavaStargazers:2Issues:2Issues:0