Community curated list of templates for the nuclei engine to find security vulnerabilities.
-
Updated
Nov 7, 2025 - JavaScript
A bug bounty program is a deal offered by many websites, organizations and software developers by which individuals can receive recognition and compensation for reporting bugs, especially those pertaining to security exploits and vulnerabilities.
Community curated list of templates for the nuclei engine to find security vulnerabilities.
Toxic MD is a powerful WhatsApp crash and bug bot developed by Joker, designed for managing and automating various bot-related functions. Whether you're testing crash bugs or exploring custom bot configurations, this bot has you covered.
A collection of tiny XSS Payloads that can be used in different contexts. https://tinyxss.terjanq.me
StaCoAn is a crossplatform tool which aids developers, bugbounty hunters and ethical hackers performing static code analysis on mobile applications.
PwnFox is a Firefox/Burp extension that provide usefull tools for your security audit.
Gosint is a distributed asset information collection and vulnerability scanning platform
Change monitoring app that checks the content of web pages in different periods.
Bug Bounty writeups, Vulnerability Research, Tutorials, Tips&Tricks
Opensource assets and vulnerability scanning tool
This extension will help you to detect GET/POST based XSS vulnerability in any website easily
My personal bug bounty toolkit.
Simple tool to scan a website for (DOM-based) XSS vulnerabilities and Open Redirects.
xss-payload-list
Nodesub is a command-line tool for finding subdomains in bug bounty programs
A deep look at some recon methodologies and web-application vulnerabilities of my interest where I will merge all my notes gathered from books, videos, articles and own experience with bug bounty hunting / web and network hacking
Community curated list of templates for the nuclei engine to find security vulnerabilities.
⚡Chrome extension allows you to create lists of Google and Github dork to open multiple tabs with one click, import "scope/out of scope" from #HackerOne #Bugcrowd #Intigriti ...
jailbreakme.xyz is an open-source decentralized app (dApp) where users are challenged to try and jailbreak pre-existing LLMs in order to find weaknesses and be rewarded. 🏆