Skip to content
View 0xJeti's full-sized avatar

Block or report 0xJeti

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

graphw00f is GraphQL Server Engine Fingerprinting utility for software security professionals looking to learn more about what technology is behind a given GraphQL endpoint.

Python 881 98 Updated May 16, 2026

docker env for ios research on a mac host

Shell 27 1 Updated Jun 12, 2025

Remote MCP Servers

1,099 487 Updated Jun 23, 2026

Archive Alchemist is a tool for creating specially crafted archives to test extraction vulnerabilities.

Python 239 20 Updated Jul 24, 2025

High-performance DNS validator using template-based verification

Go 133 5 Updated Jul 10, 2026

jxscout superpowers JavaScript analysis for security researchers

JavaScript 473 55 Updated Apr 12, 2026

The Template Injection Playground allows to test a large number of the most relevant template engines for template injection possibilities.

PHP 68 18 Updated Apr 29, 2026

Chrome extension for automating CSPT discovery

TypeScript 158 23 Updated May 12, 2026

JNDIExploit or a ysoserial.

Java 1,754 191 Updated Jun 14, 2026

Free, libre, effective, and data-driven wordlists for all!

659 92 Updated Sep 10, 2021

Helios: Automated XSS Testing

Python 158 36 Updated Aug 3, 2024

A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs

JavaScript 77 7 Updated Jun 12, 2025

Sasori is a dynamic web crawler powered by Puppeteer, designed for lightning-fast endpoint discovery.

JavaScript 145 17 Updated Jul 23, 2024

A browser extension that allows you to monitor, intercept, and debug JavaScript sinks based on customizable configurations.

JavaScript 807 87 Updated Dec 9, 2025

A collection of Server-Side Prototype Pollution gadgets and exploits

JavaScript 237 20 Updated Feb 6, 2025

Informational Repository tracking times that real world bugs have come out of CTF challenges intentionally or otherwise

64 3 Updated May 21, 2023

grep rough audit - source code auditing tool

Shell 1,682 256 Updated Dec 19, 2025

APK downloader from few sources

Python 139 20 Updated Aug 18, 2025

Mobile Edge-Dynamic Unified Security Analysis

JavaScript 2,323 319 Updated Jul 2, 2026

CT Log Scanner

Go 570 117 Updated Dec 26, 2025

TInjA is a CLI tool for testing web pages for template injection vulnerabilities and supports 44 of the most relevant template engines for eight different programming languages.

Go 424 38 Updated Apr 27, 2026

ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.

PHP 2,323 386 Updated Jul 8, 2026

The only GraphQL wordlist you'll ever need. Operations, field names, type names... Collected on more than 60k distinct GraphQL schemas.

TypeScript 481 53 Updated Oct 3, 2023

An step by step fuzzing tutorial. A GitHub Security Lab initiative

3,807 418 Updated Jun 16, 2026

Asset definitions for an organization's external attack surface

Go 67 18 Updated Mar 6, 2026

Escalate your SSRF vulnerabilities on Modern Cloud Environments. `surf` allows you to filter a list of hosts, returning a list of viable SSRF candidates.

Go 757 56 Updated Jul 10, 2026

Identify virtual hosts by similarity comparison

Go 141 22 Updated Mar 18, 2026

An incredibly fast proxy checker & IP rotator with ease.

Go 2,125 228 Updated Oct 8, 2025

⚡ Blazing-fast tool to grab screenshots of your domain list right from terminal.

Rust 441 20 Updated Jul 28, 2026
Next