Skip to content
View almroot's full-sized avatar
  • ---- ''
  • ---- ''

Block or report almroot

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Random fake data generator written in go

Go 5,327 295 Updated Mar 4, 2026

Go package to generate text from regex definitions

Go 96 19 Updated Sep 4, 2020

Prototype Pollution and useful Script Gadgets

1,604 220 Updated Jan 27, 2024

The Big List of Naughty Strings is a list of strings which have a high probability of causing issues when used as user-input data.

Python 47,621 2,162 Updated Apr 18, 2024

Process Injection Techniques with Golang

Go 80 14 Updated May 29, 2020

Simple websites vulnerable to Server Side Template Injections(SSTI)

PHP 417 89 Updated Mar 16, 2023

A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..etc. It could be used as a part of web content discovery, to …

1,029 158 Updated Feb 22, 2026

Dictionary collection project such as Pentesing, Fuzzing, Bruteforce and BugBounty. 渗透测试、SRC漏洞挖掘、爆破、Fuzzing等字典收集项目。

Shell 2,036 372 Updated Jul 21, 2023

Lesser Known Web Attack Lab

CSS 330 47 Updated Feb 7, 2020

Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.

CSS 11,089 3,034 Updated Mar 27, 2026

A list of cloud ranges from different providers.

Ruby 461 74 Updated Oct 20, 2022

Content-Type Research

660 66 Updated Jun 29, 2025

Compilation of ready to run exploits, advisories, tools and online key generators for embedded devices.

HTML 140 42 Updated Mar 13, 2016

This repo contains hourly-updated data dumps of bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) that are eligible for reports

3,678 650 Updated Mar 26, 2026

Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.

6,123 1,200 Updated Aug 14, 2024

List of DNS violations by implementations, software and/or systems

242 28 Updated Mar 30, 2023
PHP 12 2 Updated Jun 7, 2018

Signature-free approach library to detect injection and commanding attacks

C 99 21 Updated Jan 25, 2022

Go package for Ja3 TLS client and server hello fingerprints

Go 154 21 Updated Oct 24, 2025

JA3 is a standard for creating SSL client fingerprints in an easy to produce and shareable way.

Python 3,077 310 Updated May 1, 2025

Notes about attacking Jenkins servers

Python 2,089 330 Updated Jul 10, 2024

Interesting APT Report Collection And Some Special IOCs

Python 2,959 567 Updated Mar 24, 2026

This script is intended to automate your reconnaissance process in an organized fashion

Shell 2,029 586 Updated Aug 19, 2021

A permutation generation tool written in golang

Go 210 30 Updated Jul 15, 2019

A list of shodan filters

582 124 Updated Nov 25, 2018

HostHunter a recon tool for discovering hostnames using OSINT techniques.

Python 1,158 194 Updated Mar 30, 2023

Asynchronous wordlist based DKIM scanner

Python 57 16 Updated Apr 27, 2021

A security tool to fingerprint PNG libraries used by web applications

Python 82 9 Updated Apr 28, 2019

Handshake Daemon & Full Node

JavaScript 2,057 301 Updated Aug 22, 2025
Next