Skip to content
View righettod's full-sized avatar
👨‍💻
In learning mode...
👨‍💻
In learning mode...

Organizations

@OWASP @oshp @ExcelliumSA

Block or report righettod

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A collection of useful prompts and system prompts for security-oriented code reviews

37 2 Updated Jun 6, 2026

CLI only tool to capture command's output and render it to svg/png.

Python 8 Updated Mar 24, 2026

A simple Jython script for Burp Suite to handle short time refresh tokens

Python 2 Updated Dec 6, 2024

Postman OSINT tool to extract creds, token, username, email & more from Postman Public Workspaces

Python 167 17 Updated Apr 22, 2025

🖇️ equivalence table between OWASP ASVS standard and STRIDE threat modeling methodology.

76 4 Updated Aug 22, 2024

OpenSSF Scorecard - Security health metrics for Open Source

Go 5,603 685 Updated Jul 27, 2026

Diff between two APK files.

Python 139 24 Updated Mar 10, 2023

A Burp Suite extension implementing the Signing HTTP Messages draft-ietf-httpbis-message-signatures-01 draft.

Java 42 10 Updated Aug 16, 2022

Display and control your Android device

C 146,617 13,507 Updated Jul 12, 2026

🐍 Manage and run your integration tests with efficiency - Venom run executors (script, HTTP Request, web, imap, etc... ) and assertions

Go 1,215 171 Updated Jul 25, 2026

Windows and Cygwin port of proxychains, based on MinHook and DLL Injection

C 1,140 134 Updated Nov 13, 2022

Top Ten Web Hacking Techniques List

772 111 Updated Nov 10, 2023

Notes about attacking Jenkins servers

Python 2,096 326 Updated Jul 10, 2024

An awesome list of FREE resources for training, conferences, speaking, labs, reading, etc that are free. Originally built during COVID-19 for cybersecurity professionals with downtime can take adva…

2,159 302 Updated Feb 11, 2026

Imperva's customizable API attack tool takes an API specification as an input, generates and runs attacks that are based on it as an output.

Java 495 93 Updated May 13, 2023

Enumerate interesting vhosts via a wordlist attack

Shell 5 3 Updated Mar 20, 2020

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…

PHP 72,487 25,072 Updated Jul 28, 2026

This repository will serve as the "master" repo containing all trainings and tutorials done in preperation for OSWE in conjunction with the AWAE course. This repo will likely contain custom code by…

Java 948 283 Updated Jan 6, 2025

Blind WAF identification tool

Python 739 129 Updated Jun 25, 2024

Swag for the OWASP projects and chapters

45 43 Updated May 22, 2026

FIDO2 & WebAuthn Proof of Concept

C# 38 13 Updated Feb 2, 2025

CLI tool that finds secrets accidentally committed to a git repo, eg passwords, private keys

Go 1,158 92 Updated Mar 7, 2023

A simple web app that helps developers understand the ASVS requirements. Now supporting ASVS 5.0

Python 169 46 Updated Jul 13, 2026

incomplete iOS 10.2 jailbreak for 64 bit devices by qwertyoruiopz and marcograssi

Objective-C 1,761 541 Updated Apr 2, 2019

iOS Reverse Engineering

Shell 1,177 221 Updated Jun 30, 2018

A curated list of the most common and most interesting robots.txt disallowed directories.

Shell 1,491 303 Updated Aug 22, 2022

The Most Comprehensive Docker Security Scanner

Go 1,691 247 Updated Jul 29, 2026

BDD Automated Security Tests for Web Applications

Java 572 180 Updated Nov 16, 2022