Stars
First ever tool to view "Instagram private posts" anonymously
How To approach recon on real targets — from passive enumeration to origin IP discovery. Covers tools, automation, and the logic behind each phase.
OSINT & recon toolkit // 100+ tools, one-command installer, SOCMINT, GEOINT, network recon, dark web, forensics & more.
A curated collection of my security research and bug bounty writeups, documenting real-world vulnerabilities, exploitation methods
🕵️♂️ (2-in-1) Email & Username OSINT suite for deep data extraction just from a single Email/Username. Analyzes 375+ scan vectors (150+ email / 225+ username) for security research, investigations…
My ATO Via Password Reset Methodology
Create your own vulnerable by design AWS penetration testing playground
Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.
A single archive of public exploit PoCs and vulnerability research writeups. At the time I post these, none have been reported. Feel free to report them yourself and take credit for the CVE if hand…
Wrap Antigravity, ChatGPT Codex, Claude Code, Grok Build as an OpenAI/Gemini/Claude/Codex compatible API service, allowing you to enjoy the free Gemini 3.1 Pro, GPT 5.6 Series, Grok 4.5, Claude mod…
Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision
AI-Powered Agents for Bub-Bounty Pentesting and Red-Teaming purposes
a lot of html files for evil portals
An educational repository focused on Evil Portals: rogue captive portals designed to mimic legitimate login systems.
xnew is a fast, low-memory CLI that appends only unique lines to files. Built in Go for large datasets, it streams input efficiently and scales cleanly from thousands to hundreds of millions of lines.
Claude Code skill to support Android app's reverse engineering
Steiner-254 / One-Liners
Forked from 0xPugal/One-LinersA collection of awesome one-liners for bug bounty hunting.
a recon tool that allows searching on URLs that are exposed via shortener services
📡 Comprehensive collection of OSINT tools for cybersecurity professionals, researchers, and bug bounty hunters. Topics: information gathering, reverse search, red team, trust & safety, AI.
This program show you IMSI numbers of cellphones around you.
This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter
The Big Brother V5.0 is a weaponized OSINT platform featuring username enumeration (473+ platforms), quad-vector visual intelligence, Sky Radar tracking, crypto wallet analysis, SSL intelligence, d…
A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.
AI-powered bug bounty hunting from your terminal - recon, 20 vuln classes, autonomous hunting, and report generation. All inside Claude Code.
An extension to find callback endpoints in the background while searching the Web