Skip to content
View navidof5's full-sized avatar
๐Ÿ 
Working from home
๐Ÿ 
Working from home

Block or report navidof5

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this userโ€™s behavior. Learn more about reporting abuse.

Report abuse
Showing results

The recursive internet scanner for hackers. ๐Ÿงก

Python 9,229 761 Updated Dec 20, 2025

SubDominator helps you discover subdomains associated with a target domain efficiently and with minimal impact for your Bug Bounty

Python 696 120 Updated May 20, 2025

Knot Resolver - resolve DNS names like it's 2025

C 415 68 Updated Dec 19, 2025

๐ŸŒธ A command-line fuzzy finder

Go 76,068 2,642 Updated Dec 19, 2025

Like jq, but for HTML.

Rust 7,466 128 Updated May 29, 2024

Extract URLs, paths, secrets, and other interesting bits from JavaScript

Go 1,708 130 Updated May 22, 2024

Useful Google Dorks for WebSecurity and Bug Bounty

1,146 208 Updated Mar 30, 2024

IIS shortname scanner written in Go

Go 350 44 Updated Mar 25, 2023

uforall is a fast url crawler this tool crawl all URLs number of different sources, alienvault,WayBackMachine,urlscan,commoncrawl

Go 51 10 Updated Nov 3, 2025

Nodesub is a command-line tool for finding subdomains in bug bounty programs

JavaScript 148 25 Updated Aug 1, 2024

A super simple asynchronous multithreaded proxy scraper; scraping & checking ~500k HTTP, HTTPS, SOCKS4, & SOCKS5 proxies.

Python 156 23 Updated Sep 2, 2025
Python 111 24 Updated May 25, 2023

๐Ÿš€ Caido releases, wiki and roadmap

Shell 1,997 92 Updated Dec 11, 2025

Find, verify, and analyze leaked credentials

Go 23,850 2,163 Updated Dec 20, 2025

HackerOne "in scope" domains

Python 493 131 Updated Dec 20, 2025

An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws

Python 3,827 408 Updated Oct 4, 2025

๐Ÿ“œ Yet another collection of wordlists

2,057 353 Updated Dec 19, 2025

Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.

HTML 1,388 629 Updated Jun 6, 2021

Converts characters from one encoding to another using a transformation.

Python 35 9 Updated Aug 1, 2017

REcollapse is a helper tool for black-box regex fuzzing to bypass validations and discover normalizations in web applications

Python 1,271 144 Updated Aug 7, 2025

An extremely effective subdomain enumeration wordlist of 3,000,000 lines, crafted by harvesting SSL certs from the entire IPv4 space.

738 97 Updated Apr 4, 2023

Repo of all the default wordlists included in Kali. Convienent if you're using something other than Kali.

HTML 241 95 Updated Mar 29, 2022

Infosec Wordlists and more.

Python 907 247 Updated Jun 20, 2025

hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.

Go 452 66 Updated Apr 27, 2022

Find subdomains on GitHub.

Go 804 115 Updated Mar 28, 2023

Weaponize Your Burp is a repository for automation your Bug Bounty Hunting mindset in Burp Suite

77 17 Updated Jan 13, 2023

This checklist may help you to have a good methodology for bug bounty hunting When you have done a action, don't forget to check ;) Happy hunting !

5 4 Updated Jul 3, 2021

A very high performance Domain Name parser package in Go.

Go 48 15 Updated Aug 27, 2021

A curated list of Smart Contract Security materials and resources For Researchers

845 146 Updated Jan 30, 2024

In-depth attack surface mapping and asset discovery

Go 13,894 2,070 Updated Nov 30, 2025
Next