Skip to content
View gpxlnx's full-sized avatar

Highlights

  • Pro

Block or report gpxlnx

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

A complete bug bounty workspace for HackerOne researchers. Includes scope enforcement, automated recon/vuln pipeline (400+ tools), report templates, CVE/CWE watchlists, and a local VM practice lab.…

Shell 186 36 Updated Jul 20, 2026

RdpCacheStitcher is a tool that supports forensic analysts in reconstructing useful images out of RDP cache bitmaps.

C++ 330 26 Updated Sep 3, 2023

A local knowledge base for bug bounty hunters. Paste a writeup URL or raw text → Claude extracts a structured technique card → you search, filter, and review it later when you're hunting.

HTML 3 2 Updated Apr 2, 2026

A simple HAR-based JavaScript recon automation kit for organizing JS files, endpoints, secrets, and gf-filtered attack surface during bug bounty hunting.

Python 18 5 Updated May 20, 2026

This is a lightweight manual recon and app-mapping checklist I use to avoid skipping obvious attack surfaces, roles, workflows, IDs, and bug classes during the first pass of a target.

8 2 Updated Jul 7, 2026

Bug bounty methodology, checklists, and hunting notes.

27 6 Updated Jul 10, 2026

CLAUDE.md configs and skills I use for bug bounty hunting with Claude Code

25 9 Updated Apr 14, 2026

Hundreds of models & providers. One command to find what runs on your hardware.

Rust 30,829 1,876 Updated Jul 27, 2026

Debian packaging skill with comprehensive policy, debhelper, and language-specific knowledge for Ruby, Python, Rust, and Go. I mostly use this for personal, private packages not OSS Debian packages…

Shell 4 2 Updated Jul 25, 2026

Burp Suite extension that automatically flags non-standard HTTP headers in proxy traffic, helping you spot custom application headers that may reveal internal infrastructure, debug endpoints, or at…

Java 7 1 Updated Jun 1, 2026
TypeScript 3 1 Updated Jul 25, 2026

Este repo documenta e gera um catálogo de técnicas de ofuscação de URL baseadas no componente userinfo da authority (o trecho antes do @),

Python 4 Updated Jul 6, 2026

An evolving recon & pentest skill pack. CORS, XSS, SQLi, SSRF, RCE, WordPress, MCP, cloud, subdomain takeover, and more. Field-tested. MIT. Full write-up at hiago.sh

Python 1,013 179 Updated Jul 25, 2026

Autonomous AI agents for bug bounty hunting, 18 parallel hunters, built-in validator, zero setup.

Python 18 5 Updated Apr 16, 2026

OWASP Web Recon & Directory Discovery Platform

Python 993 188 Updated Jul 28, 2026
Python 3 2 Updated May 18, 2026

Tips and Tutorials for Bug Bounty and also Penetration Tests.

2,103 451 Updated Oct 7, 2025

Lightweight OSINT reconnaissance tool with web UI for bug bounty hunters and pentesters

HTML 12 2 Updated Jan 6, 2026

Ambiente de pentest assistido por IA integrando Claude Code + Caido MCP + 792 Skills + 35 Subagentes especializados. Do reconhecimento ao relatório em minutos, com persistência de findings por clie…

9 3 Updated Jul 15, 2026

Hermes cron job that monitors GitHub for new bounties matching Atlas Nexus capabilities and alerts via Telegram.

Shell 3 1 Updated May 17, 2026

Xfce Customization Guide (moved from my old repo) https://github.com/diws1/xfce-rice

CSS 10 2 Updated Apr 10, 2025

Make it easy to hunt a BUG

Shell 8 4 Updated Jun 23, 2026

Transparent anonymization proxy for AI-assisted pentesting. Strips IPs, credentials, hostnames and PII before they reach any LLM (Claude, OpenAI, OpenRouter). Local Ollama + regex detection. Per-en…

Python 644 77 Updated Jul 8, 2026

Stealth hybrid URL mapper

Shell 26 4 Updated May 1, 2026

817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3 (Fight Fraud) · agentskills.io standard · Works w…

Python 26,749 3,247 Updated Jun 26, 2026

OWASP Web Security Testing (WSTG) Scanner

Python 116 34 Updated Jun 5, 2026

SSkills (Slop Skills) is a public collection of specialist skills for security agents and human reviewers. Each skill packages structured domain knowledge, sources, examples, safety gates, and vali…

JavaScript 38 7 Updated May 27, 2026
Next