- Brisbane, Australia
- codingo.com
- @codingo_
- https://youtube.com/codingo
- https://staging.bsky.app/profile/codingo.com
Highlights
-
cloud_enum Public
Forked from initstring/cloud_enumMulti-cloud OSINT tool. Enumerate public resources in AWS, Azure, and Google Cloud.
-
Bugcrowd-Talks Public
Slide Decks and Supporting Content of talks given for Bugcrowd
-
sql-injection-payload-list Public
Forked from payloadbox/sql-injection-payload-list🎯 SQL Injection Payload List
-
bug-bounty-dorks Public
Forked from sushiwushi/bug-bounty-dorksList of Google Dorks for sites that have responsible disclosure program / bug bounty program
-
pwn_jenkins Public
Forked from gquere/pwn_jenkinsNotes about attacking Jenkins servers
-
eslint-utils Public
Forked from mysticatea/eslint-utilsUtilities for ESLint plugins and custom rules.
-
cloud_metadata_ips Public
Forked from nightwatchcybersecurity/cloud_metadata_ipsList of special metadata IPs used in cloud services
-
WeblogicScanLot Public
Forked from rabbitmask/WeblogicScanLotWeblogicScanLot系列,Weblogic漏洞批量检测工具,V2.2
-
BurpSuite-Asset_Discover Public
Forked from redhuntlabs/BurpSuite-Asset_DiscoverBurp Suite extension to discover assets from HTTP response.
-
shania Public
Forked from abdilahrf/shaniaScan secrets from Continuous Integration Build Logs
-
-
kostebek Public
Forked from esecuritylab/kostebek -
ssrf-playground Public
Forked from cosmoscrew/ssrf-playgroundA playground to practice SSRF Attacks against web apps
-
takeover Public
Forked from jaikishantulswani/takeoverSub-Domain TakeOver Vulnerability Scanner
-
certasset Public
Forked from arbazkiraak/certassetTakes ip range, Scan all open SSL Certs, Grab Cnames
-
attack-surface-detector-burp Public
Forked from secdec/attack-surface-detector-burpThe Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters
-
CVE-2018-15473-Exploit Public
Forked from Rhynorater/CVE-2018-15473-ExploitExploit written in Python for CVE-2018-15473 with threading and export formats
-
2ndOrder Public
Chrome extension to inspect and find domains that don't resolve or have expired
-
securityheaders Public
Forked from juerkkil/secheadersPython script to check HTTP security headers
-
iheartreporting Public
Forked from leesoh/iheartreportingReporting Tips for Penetration Testers
-
Awesome-Hacking-Resources Public
Forked from vitalysim/Awesome-Hacking-ResourcesA collection of hacking / penetration testing resources to make you better!
-
subjack Public
Forked from haccer/subjackHostile Subdomain Takeover tool written in Go
-
tko-subs Public
Forked from anshumanbh/tko-subsA tool that can help detect and takeover subdomains with dead DNS records
-
xssfinder Public
Forked from Damian89/xssfinderToolset for detecting reflected xss in websites
-
BeRoot Public
Forked from AlessandroZ/BeRootPrivilege Escalation Project - Windows / Linux / Mac
-
hacks Public
Forked from tomnomnom/hacksA collection of hacks and one-off scripts
-
can-i-take-over-xyz Public
Forked from EdOverflow/can-i-take-over-xyz"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.
-
prototype Public
Forked from chimaera/prototypeTemporary repository used for prototyping the core framework.
-
XSS-Payloads Public
Forked from RenwaX23/XSS-PayloadsList of XSS Vectors/Payloads
-
bettercap Public
Forked from bettercap/bettercapThe Swiss Army knife for 802.11, BLE and Ethernet networks reconnaissance and attacks.