There are 8 repositories under bughunting topic.
A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference
Making Favicon.ico based Recon Great again !
ANTLR v4 grammar-based test generator
A tool for bug hunting or pentesting for targeting websites that have open .git repositories available in public
Here I gather all the resources about hacking that I find interesting
Tools for BugHunting
Tools of "The Bug Hunters Methodology V2 by @jhaddix"
Fuzzinator Random Testing Framework
LazyHunter is an automated reconnaissance tool designed for bug hunters, leveraging Shodan's InternetDB and CVEDB APIs
Docker Remote API Scanner and Exploit
Hunt down the secrets from the WebArchives for Fun and Profit
R3C0Nizer is the first ever CLI based menu-driven web application B-Tier recon framework.
SQLi Query Tampering extends and adds custom Payload Generator/Processor in Burp Suite's Intruder. This extension gives you the flexibility of manual testing with many powerful evasion techniques.
Hacking tools
Weaponizing Live CT logs for automated monitoring of assets
Describe how to use ffuf different options with examples
Java bytecode analyzer customizable via JSON rules
Chart-Of-Wordlist helps to create your own custom wordlist. Also in one repository, you can find a list of awesome wordlist.
HackLiners: CyberSec/BugHunting OneLiners
subfalcon is a subdomain enumeration tool that allows you to discover and monitor subdomains for a given list of domains or a single domain. It fetches subdomains from various sources, checks for potential subdomain takeover vulnerabilities, saves findings to a SQLite database, and can notify updates via Discord.
هذا المستودع هي محاولة منا لاثراء المحتوي العربي بخصوص البج بونتي ومايحتويه من انواع ثغرات الي تقنيات مختلفة الي مصادر متعددة
ParamWizard is a powerful Python-based tool designed for extracting and identifying URLs with parameters from a specified website. It provides a comprehensive way to discover hidden parameters within a web application by crawling and analyzing the URLs of the domain.
I provide educational resources in this repository for starting bug hunting from scratch. The content will be updated over time! Also, I would be happy if you introduce new resources to be added
this is an guide for people aspiring to enter the world of cybersecurity
The official OWASP BLT App repository/ Heist 'em bugs!
zwatcher is a lightweight bash script for monitoring sub/domains or a list of sub/domains and javascript files. It compares HTTP status codes and content length to detect changes and notifies the user when any modifications occur. Easily keep track of your domains' health and security with zwatcher.
Reconnaissance & Footprinting framework for BugHunters & RedTeamers
Writeup finder from medium or other