Skip to content
View QQQmiracle's full-sized avatar

Block or report QQQmiracle

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
21 stars written in Python
Clear filter

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Python 76,492 16,807 Updated Mar 16, 2026

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

Python 31,653 4,417 Updated Mar 27, 2026

Everything about Web Application Firewalls (WAFs) from Security Standpoint! 🔥

Python 7,405 1,172 Updated Mar 26, 2026

Top disclosed reports from HackerOne

Python 5,481 979 Updated Mar 30, 2026

pocsuite3 is an open-sourced remote vulnerability testing framework developed by the Knownsec 404 Team.

Python 3,831 779 Updated Feb 28, 2025

Automatic SSRF fuzzer and exploitation tool

Python 3,519 565 Updated Sep 4, 2025

oletools - python tools to analyze MS OLE2 files (Structured Storage, Compound File Binary Format) and MS Office documents, for malware analysis, forensics and debugging.

Python 3,308 597 Updated Feb 14, 2026

陌陌风控系统静态规则引擎,零基础简易便捷的配置多种复杂规则,实时高效管控用户异常行为。

Python 3,048 833 Updated Jun 15, 2021

🆕 The Multi-Tool Web Vulnerability Scanner.

Python 2,049 432 Updated Aug 22, 2023

Run PowerShell command without invoking powershell.exe

Python 1,539 255 Updated Mar 23, 2023

🐛 A list of writeups from the Google VRP Bug Bounty program

Python 1,465 248 Updated Mar 26, 2026

A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)

Python 1,371 163 Updated Sep 22, 2025

知道创宇研发技能表

Python 844 166 Updated Aug 23, 2024

Blind WAF identification tool

Python 721 130 Updated Jun 25, 2024

Python3 o365 User Enumeration Tool

Python 567 95 Updated Jan 28, 2026

HTTP Protocol Stack Remote Code Execution Vulnerability CVE-2022-21907

Python 363 93 Updated Jan 20, 2022

Standalone implementation of a part of the WSUS spec. Built for offensive security purposes.

Python 341 46 Updated Nov 11, 2022

Burp Automator - A Burp Suite Automation Tool. It provides a high level CLI and Python interfaces to Burp Suite scanner and can be used to setup Dynamic Application Security Testing (DAST).

Python 294 46 Updated Sep 2, 2025

This tool is for automate the initial things that we usually do in daily pentesting. So you can focus more on the main target.

Python 77 26 Updated Nov 10, 2019

Generic plugin based web application security fuzzing for anomalies by Slándáil Research Limited

Python 13 4 Updated Feb 13, 2024