blaCCkHatHacEEkr/PENTESTING-BIBLE
Leran Ethical Hacking and penetration testing .hundreds of ethical hacking & penetration testing & red team & cyber security & computer science resources.
#awesome #awesome_list #bugbounty #csrf #cybersecurity #hacking #hacking_tool #kali_linux #linux #malware_analysis #mitm #osint #osint_resources #pentesting #redteam #resources #sql_injection #windows #xss #xxe
Stars: 110 Issues: 0 Forks: 23
https://github.com/blaCCkHatHacEEkr/PENTESTING-BIBLE
  
  Leran Ethical Hacking and penetration testing .hundreds of ethical hacking & penetration testing & red team & cyber security & computer science resources.
#awesome #awesome_list #bugbounty #csrf #cybersecurity #hacking #hacking_tool #kali_linux #linux #malware_analysis #mitm #osint #osint_resources #pentesting #redteam #resources #sql_injection #windows #xss #xxe
Stars: 110 Issues: 0 Forks: 23
https://github.com/blaCCkHatHacEEkr/PENTESTING-BIBLE
GitHub
  
  GitHub - blaCCkHatHacEEkr/PENTESTING-BIBLE: articles
  articles. Contribute to blaCCkHatHacEEkr/PENTESTING-BIBLE development by creating an account on GitHub.
  teknogeek/ssrf-sheriff
A simple SSRF-testing sheriff written in Go
Language: Go
#bugbounty #go #ssrf
Stars: 82 Issues: 0 Forks: 12
https://github.com/teknogeek/ssrf-sheriff
  
  A simple SSRF-testing sheriff written in Go
Language: Go
#bugbounty #go #ssrf
Stars: 82 Issues: 0 Forks: 12
https://github.com/teknogeek/ssrf-sheriff
GitHub
  
  GitHub - teknogeek/ssrf-sheriff: A simple SSRF-testing sheriff written in Go
  A simple SSRF-testing sheriff written in Go. Contribute to teknogeek/ssrf-sheriff development by creating an account on GitHub.
  vaib25vicky/awesome-mobile-security
An effort to build a single place for all useful android and iOS security related stuff. All references and tools are belong to their respective owners. I'm just maintaining it.
#android #android_security #awesome #awesome_list #bugbounty #hacking #hacking_tools #ios #ios_security #malware #malware_research #mobile #mobile_security #pentesting #redteam #resources #reverse_engineering #security_tools
Stars: 110 Issues: 0 Forks: 11
https://github.com/vaib25vicky/awesome-mobile-security
  
  An effort to build a single place for all useful android and iOS security related stuff. All references and tools are belong to their respective owners. I'm just maintaining it.
#android #android_security #awesome #awesome_list #bugbounty #hacking #hacking_tools #ios #ios_security #malware #malware_research #mobile #mobile_security #pentesting #redteam #resources #reverse_engineering #security_tools
Stars: 110 Issues: 0 Forks: 11
https://github.com/vaib25vicky/awesome-mobile-security
GitHub
  
  GitHub - vaib25vicky/awesome-mobile-security: An effort to build a single place for all useful android and iOS security related…
  An effort to build a single place for all useful android and iOS security related stuff. All references and tools belong to their respective owners. I'm just maintaining it. - vaib25vicky/a...
  projectdiscovery/naabu
A fast port scanner written in go with focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface discovery in bug bounties and pentests
Language: Go
#bugbounty #port_enumeration #portscanner #security_tools
Stars: 183 Issues: 3 Forks: 13
https://github.com/projectdiscovery/naabu
  
  A fast port scanner written in go with focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface discovery in bug bounties and pentests
Language: Go
#bugbounty #port_enumeration #portscanner #security_tools
Stars: 183 Issues: 3 Forks: 13
https://github.com/projectdiscovery/naabu
GitHub
  
  GitHub - projectdiscovery/naabu: A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used…
  A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface discovery in bug bounties and pentests - project...
  smodnix/31-days-of-API-Security-Tips
This challenge is Inon Shkedy's 31 days API Security Tips.
#api_pentest #api_security #bug_bounty #bugbounty #bugbountytips #infosec #pentest #security
Stars: 294 Issues: 0 Forks: 34
https://github.com/smodnix/31-days-of-API-Security-Tips
  
  This challenge is Inon Shkedy's 31 days API Security Tips.
#api_pentest #api_security #bug_bounty #bugbounty #bugbountytips #infosec #pentest #security
Stars: 294 Issues: 0 Forks: 34
https://github.com/smodnix/31-days-of-API-Security-Tips
GitHub
  
  GitHub - inonshk/31-days-of-API-Security-Tips: This challenge is Inon Shkedy's 31 days API Security Tips.
  This challenge is Inon Shkedy's 31 days API Security Tips. - inonshk/31-days-of-API-Security-Tips
  projectdiscovery/nuclei
Nuclei is a fast tool for configurable targeted scanning based on templates offering massive extensibility and ease of use.
Language: Go
#bugbounty #content_bruteforcing #content_discovery #infosec #pentest_tool #security #web
Stars: 139 Issues: 5 Forks: 22
https://github.com/projectdiscovery/nuclei
  
  Nuclei is a fast tool for configurable targeted scanning based on templates offering massive extensibility and ease of use.
Language: Go
#bugbounty #content_bruteforcing #content_discovery #infosec #pentest_tool #security #web
Stars: 139 Issues: 5 Forks: 22
https://github.com/projectdiscovery/nuclei
GitHub
  
  GitHub - projectdiscovery/nuclei: Nuclei is a fast, customizable vulnerability scanner powered by the global security community…
  Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the ...
  devanshbatham/ParamSpider
Mining parameters from dark corners of Web Archives
Language: Python
#bugbounty #content_discovery #fuzzing #osint #parameter #parameter_finder #urls_parameters
Stars: 241 Issues: 1 Forks: 50
https://github.com/devanshbatham/ParamSpider
  
  Mining parameters from dark corners of Web Archives
Language: Python
#bugbounty #content_discovery #fuzzing #osint #parameter #parameter_finder #urls_parameters
Stars: 241 Issues: 1 Forks: 50
https://github.com/devanshbatham/ParamSpider
GitHub
  
  GitHub - devanshbatham/ParamSpider: Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing
  Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing  - GitHub - devanshbatham/ParamSpider: Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/f...
  devanshbatham/Awesome-Bugbounty-Writeups
A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference
Language: Python
#bugbounty #bugbounty_blogs #bugbounty_facebook #bugbounty_writeups #bugbounty_yahoo #bugbountytips #bughuntin_writeups #bughunting #bughunting_methodology #security_writeups
Stars: 247 Issues: 0 Forks: 44
https://github.com/devanshbatham/Awesome-Bugbounty-Writeups
  
  A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference
Language: Python
#bugbounty #bugbounty_blogs #bugbounty_facebook #bugbounty_writeups #bugbounty_yahoo #bugbountytips #bughuntin_writeups #bughunting #bughunting_methodology #security_writeups
Stars: 247 Issues: 0 Forks: 44
https://github.com/devanshbatham/Awesome-Bugbounty-Writeups
GitHub
  
  GitHub - ngalongc/bug-bounty-reference: Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up…
  Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature - ngalongc/bug-bounty-reference
  devanshbatham/FavFreak
Making Favicon.ico based Recon Great again !
Language: Python
#bugbounty #bughunting #hacking #information_gathering #osint #recon #reconnaissance #web_security #webappsec
Stars: 125 Issues: 0 Forks: 31
https://github.com/devanshbatham/FavFreak
  
  Making Favicon.ico based Recon Great again !
Language: Python
#bugbounty #bughunting #hacking #information_gathering #osint #recon #reconnaissance #web_security #webappsec
Stars: 125 Issues: 0 Forks: 31
https://github.com/devanshbatham/FavFreak
GitHub
  
  GitHub - devanshbatham/FavFreak: Making Favicon.ico based Recon Great again !
  Making Favicon.ico based Recon Great again ! . Contribute to devanshbatham/FavFreak development by creating an account on GitHub.
  dwisiswant0/awesome-oneliner-bugbounty
A collection of awesome one-liner scripts especially for bug bounty tips.
#awesome #bash #bugbounty #bugbountytips #one_liners
Stars: 101 Issues: 0 Forks: 37
https://github.com/dwisiswant0/awesome-oneliner-bugbounty
  
  A collection of awesome one-liner scripts especially for bug bounty tips.
#awesome #bash #bugbounty #bugbountytips #one_liners
Stars: 101 Issues: 0 Forks: 37
https://github.com/dwisiswant0/awesome-oneliner-bugbounty
GitHub
  
  GitHub - dwisiswant0/awesome-oneliner-bugbounty: A collection of awesome one-liner scripts especially for bug bounty tips.
  A collection of awesome one-liner scripts especially for bug bounty tips. - dwisiswant0/awesome-oneliner-bugbounty
  utkusen/urlhunter
a recon tool that allows searching on URLs that are exposed via shortener services
Language: Go
#bugbounty #intelligence #osint #recon #security
Stars: 161 Issues: 2 Forks: 13
https://github.com/utkusen/urlhunter
  
  a recon tool that allows searching on URLs that are exposed via shortener services
Language: Go
#bugbounty #intelligence #osint #recon #security
Stars: 161 Issues: 2 Forks: 13
https://github.com/utkusen/urlhunter
GitHub
  
  GitHub - utkusen/urlhunter: a recon tool that allows searching on URLs that are exposed via shortener services
  a recon tool that allows searching on URLs that are exposed via shortener services - utkusen/urlhunter
  ihebski/DefaultCreds-cheat-sheet
One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️
Language: Jupyter Notebook
#blueteam #bugbounty #cheatsheet #credentials_gathering #cybersecurity #default_password #infosec #pentest #pentesting #security
Stars: 167 Issues: 0 Forks: 22
https://github.com/ihebski/DefaultCreds-cheat-sheet
  
  One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️
Language: Jupyter Notebook
#blueteam #bugbounty #cheatsheet #credentials_gathering #cybersecurity #default_password #infosec #pentest #pentesting #security
Stars: 167 Issues: 0 Forks: 22
https://github.com/ihebski/DefaultCreds-cheat-sheet
GitHub
  
  GitHub - ihebski/DefaultCreds-cheat-sheet: One place for all the default credentials to assist the Blue/Red teamers identifying…
  One place for all the default credentials to assist the Blue/Red teamers identifying devices with default password 🛡️ - ihebski/DefaultCreds-cheat-sheet
  sickcodes/no-sandbox
No Sandbox - Applications That Run Chromium and Chrome Without The Sandbox. TL;DR exploits in these browser based applications are already sandboxed escaped: https://no-sandbox.io/
#0day #bug #bugbounty #chrome #chromium #exploit #rce #research
Stars: 91 Issues: 2 Forks: 8
https://github.com/sickcodes/no-sandbox
  
  No Sandbox - Applications That Run Chromium and Chrome Without The Sandbox. TL;DR exploits in these browser based applications are already sandboxed escaped: https://no-sandbox.io/
#0day #bug #bugbounty #chrome #chromium #exploit #rce #research
Stars: 91 Issues: 2 Forks: 8
https://github.com/sickcodes/no-sandbox
no-sandbox
  
  No Sandbox
  No Sandbox - Applications That Run Chromium and Chrome Without The Sandbox. TL;DR exploits in these browser based applications are already sandboxed escaped: https://no-sandbox.io/
  Puliczek/CVE-2021-44228-PoC-log4j-bypass-words
🐱💻 ✂️ 🤬 CVE-2021-44228 - LOG4J Java exploit - A trick to bypass words blocking patches
Language: Java
#bugbounttips #bugbounty #bugbounty_writeups #cve #cve_2021_44228 #cybersecurity #exploit #hacking #log4j #payload #pentest #pentesting #red_team #security #security_writeups #writeups
Stars: 191 Issues: 0 Forks: 38
https://github.com/Puliczek/CVE-2021-44228-PoC-log4j-bypass-words
  
  🐱💻 ✂️ 🤬 CVE-2021-44228 - LOG4J Java exploit - A trick to bypass words blocking patches
Language: Java
#bugbounttips #bugbounty #bugbounty_writeups #cve #cve_2021_44228 #cybersecurity #exploit #hacking #log4j #payload #pentest #pentesting #red_team #security #security_writeups #writeups
Stars: 191 Issues: 0 Forks: 38
https://github.com/Puliczek/CVE-2021-44228-PoC-log4j-bypass-words
GitHub
  
  GitHub - Puliczek/CVE-2021-44228-PoC-log4j-bypass-words: 🐱💻 ✂️ 🤬 CVE-2021-44228 - LOG4J Java exploit - WAF bypass tricks
  🐱💻 ✂️ 🤬 CVE-2021-44228 - LOG4J Java exploit - WAF bypass tricks - Puliczek/CVE-2021-44228-PoC-log4j-bypass-words
❤2
  Puliczek/awesome-list-of-secrets-in-environment-variables
🦄🔒 Awesome list of secrets in environment variables 🖥️
#blue_team #bugbounttips #bugbounty #cve_2021_44228 #cybersecurity #exploit #log4j #pentesting #poc #red_team #security #security_writeups #writeups
Stars: 139 Issues: 0 Forks: 9
https://github.com/Puliczek/awesome-list-of-secrets-in-environment-variables
  
  🦄🔒 Awesome list of secrets in environment variables 🖥️
#blue_team #bugbounttips #bugbounty #cve_2021_44228 #cybersecurity #exploit #log4j #pentesting #poc #red_team #security #security_writeups #writeups
Stars: 139 Issues: 0 Forks: 9
https://github.com/Puliczek/awesome-list-of-secrets-in-environment-variables
GitHub
  
  GitHub - Puliczek/awesome-list-of-secrets-in-environment-variables: 🦄🔒 Awesome list of secrets in environment variables 🖥️
  🦄🔒 Awesome list of secrets in environment variables 🖥️ - Puliczek/awesome-list-of-secrets-in-environment-variables
👎5👍1
  cyprosecurity/API-SecurityEmpire
API Security Projecto aims to present unique attack & defense methods in API Security field
#apisecurity #bugbounty #cybersecurity #information_security #penetration_testing
Stars: 208 Issues: 0 Forks: 28
https://github.com/cyprosecurity/API-SecurityEmpire
  
  API Security Projecto aims to present unique attack & defense methods in API Security field
#apisecurity #bugbounty #cybersecurity #information_security #penetration_testing
Stars: 208 Issues: 0 Forks: 28
https://github.com/cyprosecurity/API-SecurityEmpire
GitHub
  
  GitHub - cyprosecurity/API-SecurityEmpire: API Security Project aims to present unique attack & defense methods in API Security…
  API Security Project aims to present unique attack & defense methods in API Security field - cyprosecurity/API-SecurityEmpire
👍6
  Puliczek/CVE-2022-0337-PoC-Google-Chrome-Microsoft-Edge-Opera
🎩 🤟🏻 [P1-$10,000] Google Chrome, Microsoft Edge and Opera - vulnerability reported by Maciej Pulikowski - System environment variables leak - CVE-2022-0337
Language: HTML
#bugbounty #bugbounty_writeups #bugbountytips #cve #cve_2022_0337 #cybersecurity #exploit #hacking #payload #pentest #pentesting #red_team #security #security_writeups #writeups
Stars: 131 Issues: 0 Forks: 22
https://github.com/Puliczek/CVE-2022-0337-PoC-Google-Chrome-Microsoft-Edge-Opera
  
  🎩 🤟🏻 [P1-$10,000] Google Chrome, Microsoft Edge and Opera - vulnerability reported by Maciej Pulikowski - System environment variables leak - CVE-2022-0337
Language: HTML
#bugbounty #bugbounty_writeups #bugbountytips #cve #cve_2022_0337 #cybersecurity #exploit #hacking #payload #pentest #pentesting #red_team #security #security_writeups #writeups
Stars: 131 Issues: 0 Forks: 22
https://github.com/Puliczek/CVE-2022-0337-PoC-Google-Chrome-Microsoft-Edge-Opera
GitHub
  
  GitHub - Puliczek/CVE-2022-0337-PoC-Google-Chrome-Microsoft-Edge-Opera: 🎩 🤟🏻 [P1-$10,000] Google Chrome, Microsoft Edge and Opera…
  🎩 🤟🏻 [P1-$10,000] Google Chrome, Microsoft Edge and Opera - vulnerability reported by Maciej Pulikowski - System environment variables leak - CVE-2022-0337 - Puliczek/CVE-2022-0337-PoC-Google-Chrom...
👍2
  utkusen/socialhunter
crawls the website and finds broken social media links that can be hijacked
Language: Go
#bug_bounty #bugbounty #osint #redteam #redteaming
Stars: 97 Issues: 0 Forks: 8
https://github.com/utkusen/socialhunter
  
  crawls the website and finds broken social media links that can be hijacked
Language: Go
#bug_bounty #bugbounty #osint #redteam #redteaming
Stars: 97 Issues: 0 Forks: 8
https://github.com/utkusen/socialhunter
GitHub
  
  GitHub - utkusen/socialhunter: crawls the website and finds broken social media links that can be hijacked
  crawls the website and finds broken social media links that can be hijacked - utkusen/socialhunter
  Impact-I/reFlutter
Flutter Reverse Engineering Framework
Language: Python
#bugbounty #mobile_security #reverse_engineering #ssl_pinning
Stars: 196 Issues: 34 Forks: 12
https://github.com/Impact-I/reFlutter
  
  Flutter Reverse Engineering Framework
Language: Python
#bugbounty #mobile_security #reverse_engineering #ssl_pinning
Stars: 196 Issues: 34 Forks: 12
https://github.com/Impact-I/reFlutter
GitHub
  
  GitHub - Impact-I/reFlutter: Flutter Reverse Engineering Framework
  Flutter Reverse Engineering Framework. Contribute to Impact-I/reFlutter development by creating an account on GitHub.
❤1👍1😁1
  edoardottt/awesome-hacker-search-engines
A list of search engines useful during Penetration testing, vulnerability assessments, red team operations, bug bounty and more
#awesome #awesome_list #awesome_lists #bugbounty #dns #domain #exploit #hacking #hacking_tools #osint #osint_tool #redteam #redteaming #search_engine #security #security_tools #url #vulnerabilities #vulnerability #wifi_network
Stars: 412 Issues: 0 Forks: 20
https://github.com/edoardottt/awesome-hacker-search-engines
  
  A list of search engines useful during Penetration testing, vulnerability assessments, red team operations, bug bounty and more
#awesome #awesome_list #awesome_lists #bugbounty #dns #domain #exploit #hacking #hacking_tools #osint #osint_tool #redteam #redteaming #search_engine #security #security_tools #url #vulnerabilities #vulnerability #wifi_network
Stars: 412 Issues: 0 Forks: 20
https://github.com/edoardottt/awesome-hacker-search-engines
GitHub
  
  GitHub - edoardottt/awesome-hacker-search-engines: A curated list of awesome search engines useful during Penetration testing,…
  A curated list of awesome search engines useful during Penetration testing, Vulnerability assessments, Red/Blue Team operations, Bug Bounty and more - edoardottt/awesome-hacker-search-engines
👍6
  