Lists (24)
Sort Name ascending (A-Z)
android pentest
api pentesting
burpsuite utilized
Bypass (4xx)
checklists, methodologies
code review, devsecops
general stuffs
ios pentest
node stuffs
payloads
pentest note taking apps
recon (application)
recon (assets)
recon (dorks, queries)
recon (javascripts)
vulnerable android apps
vulnerable ios apps
vulnerable [web] apps
vulns (open redirect)
vulns (sqli)
vulns (ssrf)
vulns (xss)
wlists
writeups & edu
Stars
A curated list of awesome search engines useful during Penetration testing, Vulnerability assessments, Red/Blue Team operations, Bug Bounty and more
A collection of android security related resources
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
Makes reverse engineering Android apps easier, automating repetitive tasks like pulling, decoding, rebuilding and patching an APK.
π ZSH port of Fish history search (up arrow)
A collection of snippets of codes and commands to make your life easier!
πΎπΎ Genymotion_ARM_Translation Please enjoyοΌ
A Magisk/KernelSU module that automatically adds user certificates to the system root CA store
A simple script just made for self use for bypassing 403
403/401 Bypass Methods + Bash Automation + Your Support ;)
A curated list of the most common and most interesting robots.txt disallowed directories.
Automation for javascript recon in bug bounty.
A fast DOM based XSS vulnerability scanner with simplicity.
An OSINT tool to quickly extract IP and URL endpoints from APKs by disassembling and decompiling
TOP All bugbounty pentesting CVE-2023- POC Exp RCE example payload Things
Bug Bounty ~ Awesomes | Books | Cheatsheets | Checklists | Tools | Wordlists | More
Collection of notes to prepare for the eLearnSecurity eJPT certification exam.
Script to Automate installtion of Apps ,frida server and moving Burpsuite certificate to root folder
The Repository contains various payloads, tools, tips and tricks from various hackers around the world. Please take a quick look down here ππ
A Bind9 server for pentesters to use for Out-of-Band vulnerabilities
Covers Top 10 OWASP Mobile Vulnerabilities
ReconMaster contest - scripts used and a write-up
This script helps to avoid portscanning on Linux systems.
A docker-compose file to start NGINX as a Reverse Proxy. Let's Encrypt / Certbot Support and A+ Rating included.