tribunal's starred repositories

syncthing

Open Source Continuous File Synchronization

Language:GoLicense:MPL-2.0Stargazers:61618Issues:1017Issues:5421

nuclei

Fast and customizable vulnerability scanner based on simple YAML based DSL.

ffuf

Fast web fuzzer written in Go

wstg

The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

Language:DockerfileLicense:CC-BY-SA-4.0Stargazers:6866Issues:322Issues:341

tpotce

🍯 T-Pot - The All In One Multi Honeypot Platform 🐝

Language:CLicense:GPL-3.0Stargazers:6229Issues:190Issues:957

xss-payload-list

🎯 Cross Site Scripting ( XSS ) Vulnerability Payload List

awesome-bug-bounty

A comprehensive curated list of available Bug Bounty & Disclosure Programs and Write-ups.

progressbar

A really basic thread-safe progress bar for Golang applications

Language:GoLicense:MITStargazers:3913Issues:24Issues:95

LinkFinder

A python script that finds endpoints in JavaScript files

Language:PythonLicense:MITStargazers:3542Issues:64Issues:80

dalfox

🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.

awesome-burp-extensions

A curated list of amazingly awesome Burp Extensions

ParamSpider

Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing

Language:PythonLicense:MITStargazers:2306Issues:36Issues:91

jaeles

The Swiss Army knife for automated Web Application Testing

Language:GoLicense:MITStargazers:2102Issues:78Issues:51

byp4xx

40X/HTTP bypasser in Go. Features: Verb tampering, headers, #bugbountytips, User-Agents, extensions, default credentials...

MobileHackingCheatSheet

Basics on commands/tools/info on how to assess the security of mobile applications

AWSBucketDump

Security Tool to Look For Interesting Files in S3 Buckets

Language:PythonLicense:MITStargazers:1337Issues:46Issues:8

Mitigating-Web-Shells

Guidance for mitigation web shells. #nsacyber

Language:YARALicense:NOASSERTIONStargazers:953Issues:58Issues:7

DNSGrep

Quickly Search Large DNS Datasets

Language:GoLicense:MITStargazers:580Issues:19Issues:13

commonspeak

Content discovery wordlists generated using BigQuery

Language:ShellLicense:GPL-3.0Stargazers:535Issues:19Issues:3

upload-scanner

HTTP file upload scanner for Burp Proxy

Language:PerlStargazers:385Issues:17Issues:0

jaeles-signatures

Default signature for Jaeles Scanner

htbenum

A Linux enumeration script for Hack The Box

Language:ShellLicense:GPL-3.0Stargazers:188Issues:8Issues:2

anti-axelspringer-hosts

A hosts file which blocks all services from Axel Springer Verlag.

Language:PythonLicense:GPL-3.0Stargazers:133Issues:6Issues:7

psc

E2E encryption for multi-hop tty sessions or portshells + TCP/UDP port forward

Language:C++License:NOASSERTIONStargazers:109Issues:4Issues:3

Ghazi

Ghazi is a BurpSuite Plugins For Testing various PayLoads Like "XSS,SQLi,SSTI,SSRF,RCE and LFI" through Different tabs , Where Each Tab Will Replace Every GET or POST Parameters With Selected TAB in "Proxy" or "Repeater" TAB

burp-piper

Piper Burp Suite Extender plugin

Language:KotlinLicense:GPL-3.0Stargazers:107Issues:12Issues:25

burp-dump

A Burp plugin to dump HTTP(S) requests/responses to a file system

Language:RubyLicense:GPL-2.0Stargazers:23Issues:1Issues:1

notes

Burp Notes Extension is a plugin for Burp Suite that adds a Notes tab. The tool aims to better organize external files that are created during penetration testing.

Language:JavaLicense:GPL-3.0Stargazers:3Issues:2Issues:0