Skip to content
View Luke1th's full-sized avatar

Block or report Luke1th

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

🎯 Command Injection Payload List

3,682 754 Updated Jul 18, 2024

recon for bug hunters

Python 854 183 Updated Nov 20, 2025

Fully autonomous AI hacker to find actual exploits in your web apps. Shannon has achieved a 96.15% success rate on the hint-free, source-aware XBOW Benchmark.

JavaScript 2 1 Updated Dec 15, 2025

The OWASP Testing Guide includes a "best practice" penetration testing framework which users can implement in their own organizations and a "low level" penetration testing guide that describes tech…

19 8 Updated Aug 10, 2019

Three complete IT / Cybersecurity resume for the following job roles: Systems Administration, SOC Analyst, & Penetration Tester.

25 2 Updated Apr 2, 2025

Source code for Hacker101.com - a free online web and mobile security class.

SCSS 14,306 2,638 Updated Feb 22, 2025

Offensive security drives defensive security. We're sharing a collection of SaaS attack techniques to help defenders understand the threats they face. #nolockdown

1,396 104 Updated Jun 24, 2025

An easy-to-setup version of XSS Hunter. Sets up in five minutes and requires no maintenance!

JavaScript 2,172 398 Updated Mar 7, 2024

Access large language models from the command-line

Python 10,578 707 Updated Dec 18, 2025

Identify changes made to a filesystem made by a malicious file

Shell 2 Updated Jun 18, 2022

A Linux version of the Procmon Sysinternals tool

C 4,596 289 Updated Oct 21, 2025

ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.

PHP 2,212 380 Updated Dec 14, 2025
C 39 4 Updated Dec 9, 2025

A collection of AWS penetration testing junk

Python 1,212 195 Updated Aug 30, 2023

A curated list of resources for learning about application security

PHP 6,753 773 Updated Feb 22, 2025

Automated HTTP Request Repeating With Burp Suite

Java 889 118 Updated Dec 15, 2021

World's fastest and most advanced password recovery utility

C 24,966 3,311 Updated Nov 20, 2025

My collection of various security tools created mostly in Python and Bash. For CTFs and Bug Bounty.

Python 905 178 Updated Sep 25, 2025

Collection of the cheat sheets useful for pentesting

4,206 790 Updated Feb 16, 2024

Damn Vulnerable Web Application (DVWA)

PHP 12,343 4,472 Updated Dec 12, 2025

Web app that provides basic navigation and annotation of ATT&CK matrices

TypeScript 2,275 669 Updated Dec 19, 2025

Open-source vulnerability disclosure and bug bounty program database

Python 1,043 320 Updated Jul 20, 2025

Utilities for MITRE™ ATT&CK

HTML 1,045 215 Updated Sep 21, 2025

HackBar plugin for Burpsuite

Java 1,606 257 Updated Apr 15, 2021

SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.

Python 16,195 2,735 Updated Dec 15, 2024

Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the active and passive scanner by means of personalized rules thro…

Java 1,762 341 Updated Apr 26, 2024

Another way to bypass WAF Cheat Sheet (draft)

430 65 Updated Nov 28, 2018

Blackbox tool to disable SSL certificate validation - including certificate pinning - within iOS and macOS applications.

Objective-C 3,236 482 Updated Jul 9, 2023

The Penetration Testers Framework (PTF) is a way for modular support for up-to-date tools.

Python 5,449 1,284 Updated Sep 22, 2024

Hunspell UTF8 dictionaries. These work with Sublime Text. [Spell check]

Python 1,564 690 Updated Aug 11, 2025
Next