Stars
Spider entire networks for juicy files sitting on SMB shares. Search filenames or file content - regex supported!
Soul-driven AI agent with permission-hardened tools, token budgets, and multi-channel access. Runs 24/7 from CLI or Telegram.
The best-benchmarked open-source AI memory system. And it's free.
🕷️ An adaptive Web Scraping framework that handles everything from a single request to a full-scale crawl!
OmX - Oh My codeX: Your codex is not alone. Add hooks, agent teams, HUDs, and so much more.
Free Active Directory pentesting tool for Linux. Automates AD and LDAP enumeration, Kerberoasting, ASREPRoast, password spraying, ADCS/ESC1, DCSync, RBCD, gMSA, shadow credentials, NTLM relay and c…
Advanced JavaScript File Discovery and Analysis Tool
Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.
Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more
A curated list of awesome MCP servers focused on DevOps tools and capabilities.
JSSCM detects expired domains for Stored XSS exploitation during browsing.
Bounty Prompt is an Open-Source Burp Suite extension by Bounty Security that leverages advanced AI via Burp AI and Groq AI. It enables users to generate intelligent security testing prompts and tai…
The "Redacted Request Extension" is a powerful tool designed to enhance the security and confidentiality of HTTP request handling within the Burp Suite.
a javascript change monitoring tool for bugbounties
TInjA is a CLI tool for testing web pages for template injection vulnerabilities and supports 44 of the most relevant template engines for eight different programming languages.
A simple Burp Suite extension to crawl JavaScript (JS) files in passive mode and display the results directly on the issues
A collection of tiny XSS Payloads that can be used in different contexts. https://tinyxss.terjanq.me
A python tool used to discover endpoints, potential parameters, a target specific wordlist for a given target and secrets
A Burp Suite extension to add OpenAI (GPT) on Burp and help you with your Bug Bounty recon to discover endpoints, params, URLs, subdomains and more!
a code written by me to decode the DNA Cipher (Genetic ) CTF challenge in which it is in the form of GAAACCACATATGATAAAACATAC
Burp extension to create target specific and tailored wordlist from burp history.
AutoSUID application is the Open-Source project, the main idea of which is to automate harvesting the SUID executable files and to find a way for further escalating the privileges.
CVE-2019-11580 Atlassian Crowd and Crowd Data Center RCE
Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one place