Skip to content
View TheTwitchy's full-sized avatar

Block or report TheTwitchy

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A blind XXE injection callback handler. Uses HTTP and FTP to extract information. Originally written in Ruby by ONsec-Lab.

Python 519 88 Updated Jul 29, 2020

A Python3 based single-file subdomain enumerator

Python 90 20 Updated Oct 5, 2019

🔖 Personal mini-web in text

Python 7,141 315 Updated Jun 10, 2026

n³ The unorthodox terminal file manager

C 21,619 805 Updated Jun 7, 2026

Nginx configuration static analyzer

Python 8,568 451 Updated Jul 28, 2024

JWT brute force cracker written in C

C 2,548 271 Updated Jun 2, 2023

Free and Open Source Reverse Engineering Platform powered by rizin

C++ 18,939 1,368 Updated Jun 2, 2026

Intercepting TCP proxy to modify raw TCP streams using modules on incoming or outgoing traffic

Python 315 84 Updated May 29, 2024

Pop shells like a master.

Python 1,486 230 Updated Apr 2, 2019

Generates permutations, alterations and mutations of subdomains and then resolves them

Python 2,502 448 Updated Jan 9, 2025

Enumerating IPs in X-Forwarded-Headers to bypass 403 restrictions

Python 227 52 Updated Mar 29, 2022

CommonMark spec, with reference implementations in C and JavaScript

Python 5,099 353 Updated Apr 27, 2026

Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.

PHP 8,930 2,109 Updated Nov 10, 2023

a general-purpose fuzzer

1,290 136 Updated Aug 14, 2018

application server attack toolkit

Python 686 196 Updated Apr 6, 2020

A ruby script that scans for vulnerable & exploitable 3rd-party web applications on a network

Ruby 575 139 Updated Dec 9, 2017

PEDA - Python Exploit Development Assistance for GDB

Python 6,128 831 Updated Jul 29, 2024
AGS Script 154 43 Updated Oct 30, 2014

Find, verify, and analyze leaked credentials

Go 26,747 2,455 Updated Jun 12, 2026

[NOT MAINTAINED] This script creates a NATed or Bridged WiFi Access Point.

Shell 4,514 1,002 Updated Dec 13, 2023

A static-code-analysis tool for performing security-focused code reviews. It enables an auditor to swiftly map the attack-surface of a large application, with an emphasis on identifying development…

HTML 143 24 Updated Jul 9, 2024

A DNS connectback shell executed by strings in payloads.txt

Python 104 19 Updated Sep 19, 2023

This is a Burp extension for adding additional payloads to active scanner that require out-of-band validation. Works great with XSSHunter

Python 20 1 Updated Feb 16, 2017

A simple curses based in-place hex editor for Linux. Built to replace using xxd and emacs hexl-mode over and over to do low level editing of files. Supports resizing of files and ASCII insertion.

C 5 Updated Mar 29, 2018

Access the power and flexibility of PHP from within Python

Python 39 2 Updated Apr 2, 2016

Watchtower is a Static Code Analysis tool designed to assist security auditors who are tasked with performing manual code reviews. It is platform- and language-agnostic.

Ruby 110 26 Updated Jun 27, 2017

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

PowerShell 9,951 2,542 Updated Apr 25, 2024

Scripted Local Linux Enumeration & Privilege Escalation Checks

Shell 7,935 2,014 Updated Sep 6, 2023

Removes swear words and inappropriate content from wordlists.

Python 9 Updated Mar 29, 2018

Web path scanner

Python 14,384 2,444 Updated Jun 12, 2026
Next