Lists (1)
Sort Name ascending (A-Z)
Starred repositories
🍪 CookieMonster helps you detect and abuse vulnerable implementations of stateless sessions.
A cross-platform desktop client for the jailbroken New Bing AI Copilot (Sydney ver.) built with Go and Wails (previously based on Python and Qt).
A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.
A command-line utility designed to discover URLs for a given domain in a simple, efficient way. It works by gathering information from a variety of passive sources, meaning it doesn't interact dire…
BucketLoot is an automated S3-compatible bucket inspector that can help users extract assets, flag secret exposures and even search for custom keywords as well as Regular Expressions from publicly-…
🦉🔎 A simple tool to audit your AWS/GCP infrastructure for misconfiguration or potential security issues with plugins integration
Community curated list of search queries for various products across multiple search engines.
jsubfinder searches webpages for javascript & analyzes them for hidden subdomains and secrets (wip).
Fast and stealthy Amazon S3 bucket enumeration tool for pentesters.
A tool to quickly do keyword searches over Gitlab and Github for OSINT & bug bounty recon
This program provides efficient web scraping services for Tor and non-Tor sites. The program has both a CLI and REST API.
This repository updates latest Bug Bounty medium writeups every 10 minutes, https://readmedium.com/Medium_URL, https://archive.ph/Medium_URL, https://freedium.cfd/Medium_URL
A command-line utility designed to discover subdomains for a given domain in a simple, efficient way. It works by gathering information from a variety of passive sources, meaning it doesn't interac…
The perfect butler for pentesters, bug-bounty hunters and security researchers
Steal Ethereum or ERC20 tokens from private key generated randomly