Skip to content
View umarjoniy's full-sized avatar
🙂
🙂

Highlights

  • Pro

Block or report umarjoniy

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Catch API bugs before your users do

Python 3,387 218 Updated Jun 16, 2026

Obtain GraphQL API schema even if the introspection is disabled

Python 1,482 133 Updated Dec 5, 2025

Android deeplink misconfiguration detector and exploitation tool

Python 84 12 Updated Feb 22, 2026

🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.

Rust 5,066 533 Updated Jun 17, 2026

Probe a rendering engine for vulnerabilities and other features

JavaScript 365 58 Updated Oct 13, 2021

💀 Generate malicious PDF test files for testing phone-home callbacks, SSRF, XSS, NTLM credential theft, and data exfiltration in PDF viewers, converters, and web applications. Can be used with Burp…

Python 4,077 535 Updated Jun 4, 2026

Obsidian plugin — audit + auto-cleanup of your vault. Detects broken links, orphan notes, duplicates, ghost attachments. Local-first, dry-run by default.

TypeScript 4 Updated May 1, 2026

CORS Misconfiguration Scanner

Python 1,522 188 Updated Sep 17, 2022

Deriving RSA public keys from message-signature pairs

Python 405 61 Updated May 11, 2026

Clone this repo to build Frida

Meson 21,018 2,138 Updated Jun 17, 2026

"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.

Python 5,731 801 Updated Feb 8, 2025

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

OCaml 15,553 967 Updated Jun 18, 2026

Find, verify, and analyze leaked credentials

Go 26,807 2,469 Updated Jun 18, 2026

This repository will contain many mindmaps for cyber security technologies, methodologies, courses, and certifications in a tree structure to give brief details about them

8,940 1,732 Updated May 2, 2026

Community curated list of templates for the nuclei engine to find security vulnerabilities.

JavaScript 12,526 3,531 Updated Jun 18, 2026

Timelock Encryption made practical. The Go `tlock` library and the `tle` cmd line tool home to encrypt towards the future.

Go 654 33 Updated Dec 22, 2025

An open source personal productivity platform built on Markdown, turbo charged with the scripting power of Lua

TypeScript 5,476 429 Updated Jun 16, 2026

how to look for Leaked Credentials !

1,050 139 Updated May 6, 2024

one-for-all llm powered, passive & active subdomain enumeration tool

Go 109 13 Updated Nov 27, 2025

A `.git` folder disclosure exploit

Python 3,548 811 Updated Feb 1, 2023

Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.

Ruby 1,755 325 Updated Dec 1, 2024

Full-featured C2 framework which silently persists on webserver with a single-line PHP backdoor

Python 2,475 471 Updated May 6, 2024

Damn Vulnerable Web Services is a vulnerable application with a web service and an API that can be used to learn about webservices/API related vulnerabilities.

JavaScript 511 225 Updated Mar 29, 2026

Claude Code is an agentic coding tool that lives in your terminal, understands your codebase, and helps you code faster by executing routine tasks, explaining complex code, and handling git workflo…

Python 133,146 21,527 Updated Jun 18, 2026

A visual, example-driven guide to Claude Code — from basic concepts to advanced agents, with copy-paste templates that bring immediate value.

Python 37,504 4,526 Updated Jun 17, 2026

An agent-managed museum exhibit, built in Rust with Gajae-Code / LazyCodex — developed and maintained with no human intervention.

Rust 193,997 109,953 Updated Jun 8, 2026

Simple CLI program that will fetch and convert a HackTheBox Academy module into a local file in Markdown format.

Go 82 16 Updated Mar 16, 2026

OSINT resources and tools by country, structured for fact-checkers and digital profilers

153 22 Updated Sep 10, 2025

A little tool to play with Windows security

C 21,631 4,132 Updated Apr 17, 2026

Simple CLI program that will fetch and convert a HackTheBox Academy module into a local file in Markdown format.

Go 1 Updated Apr 1, 2026
Next