Skip to content
View Mochazz's full-sized avatar
:octocat:
Just change 'Impossible' to 'I'm Possible'.
:octocat:
Just change 'Impossible' to 'I'm Possible'.

Block or report Mochazz

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
44 results for source starred repositories written in Python
Clear filter

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Python 71,469 16,188 Updated Nov 2, 2025

JumpServer is an open-source Privileged Access Management (PAM) platform that provides DevOps and IT teams with on-demand and secure access to SSH, RDP, Kubernetes, Database and RemoteApp endpoints…

Python 28,969 5,594 Updated Nov 7, 2025

Web path scanner

Python 13,612 2,402 Updated Oct 20, 2025

Incredibly fast crawler designed for OSINT.

Python 12,358 1,653 Updated Mar 31, 2025

Everything about Web Application Firewalls (WAFs) from Security Standpoint! 🔥

Python 6,959 1,119 Updated Aug 28, 2025

CTFs as you need them

Python 6,342 2,483 Updated Nov 6, 2025

PEDA - Python Exploit Development Assistance for GDB

Python 6,066 822 Updated Jul 29, 2024

Automated All-in-One OS Command Injection Exploitation Tool.

Python 5,511 899 Updated Oct 27, 2025

宝塔Linux面板 - 简单好用的服务器运维面板

Python 4,440 1,000 Updated Oct 10, 2025

Server-Side Template Injection and Code Injection Detection and Exploitation Tool

Python 4,063 687 Updated Apr 21, 2024

Automatic SSRF fuzzer and exploitation tool

Python 3,392 555 Updated Sep 4, 2025

An advanced web directory & file scanning tool that will be more powerful than DirBuster, Dirsearch, cansina, and Yu Jian.一个高级web目录、文件扫描工具,功能将会强于DirBuster、Dirsearch、cansina、御剑。

Python 3,336 559 Updated Oct 21, 2025

JSFinder is a tool for quickly extracting URLs and subdomains from JS files on a website.

Python 2,871 424 Updated Nov 24, 2021

SSRF (Server Side Request Forgery) testing resources

Python 2,442 485 Updated Oct 12, 2024

Tool for advanced mining for content on Github

Python 2,152 433 Updated Nov 5, 2025

Notes about attacking Jenkins servers

Python 2,084 334 Updated Jul 10, 2024

Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner

Python 1,884 401 Updated Apr 13, 2022

This project has stopped to maintenance, please to https://github.com/knownsec/pocsuite3 project.

Python 1,822 602 Updated May 27, 2022

Shamelessly convert any Python 2 script into a terrible single line of code

Python 1,529 111 Updated May 18, 2025

PHP Internals Book

Python 1,413 179 Updated Aug 27, 2025

一键ThinkPHP漏洞检测

Python 1,154 183 Updated Nov 1, 2023

SvnExploit支持SVN源代码泄露全版本Dump源码

Python 1,017 174 Updated Dec 20, 2022

An Easy / Quick / Cheap Integrated Platform

Python 639 136 Updated Dec 12, 2022

RCE 0-day for GhostScript 9.50 - Payload generator

Python 547 107 Updated Sep 8, 2021

提取远程 git 泄露或本地 git 的工具

Python 482 58 Updated May 23, 2024

Rogue MySql Server

Python 473 273 Updated Sep 15, 2013

Herramienta para evadir disable_functions y open_basedir

Python 465 97 Updated Sep 5, 2023

Some tools for CTF off line

Python 440 99 Updated Apr 21, 2018

收集各大比赛的题目和Writeup

Python 427 104 Updated Dec 20, 2018

A PoC for CVE-2020-0601

Python 337 84 Updated May 9, 2023
Next