Skip to content
View bayotop's full-sized avatar

Block or report bayotop

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Demo showcasing information leaks resulting from an IndexedDB same-origin policy violation in WebKit.

JavaScript 100 13 Updated Jan 16, 2023

Android library to verify the safety of user devices. Make sure that API calls from your app can be trusted. Instantly detect rooted devices, emulators, cloned apps, and other risk factors.

Kotlin 85 14 Updated Mar 22, 2023

GradeJS analyzes production Webpack bundles without having access to the source code of a website. Instantly see vulnerabilities, outdated packages, and more just by entering a web application URL.

TypeScript 405 14 Updated Nov 8, 2022

AppSec Ezine Public Repository.

1,218 107 Updated Nov 14, 2025

Viewgen is a ViewState tool capable of generating both signed and encrypted payloads with leaked validation keys

Python 660 88 Updated Feb 1, 2025

Fast web fuzzer written in Go

Go 15,904 1,545 Updated Apr 24, 2025

My simple Swiss Army knife for http/https troubleshooting and profiling.

Shell 3,854 243 Updated Nov 19, 2024

Easily turn single threaded command line applications into a fast, multi-threaded application with CIDR and glob support.

Python 1,290 186 Updated Sep 12, 2025

A collection of useful Serverless functions I use when pentesting

JavaScript 390 72 Updated Dec 9, 2022

A tool for exploring each layer in a docker image

Go 53,786 1,989 Updated Dec 15, 2025

Content released at NorthSec 2018 for my talk on prototype pollution

JavaScript 536 87 Updated May 25, 2024
Bikeshed 266 34 Updated Apr 16, 2026

A collection of templates for bug bounty reporting

461 101 Updated Dec 15, 2025

This repo contains hourly-updated data dumps of bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) that are eligible for reports

3,700 653 Updated Apr 16, 2026

Automatically exported from code.google.com/p/domxsswiki

HTML 549 79 Updated May 12, 2018

Browser's XSS Filter Bypass Cheat Sheet

1,151 214 Updated May 6, 2017

CVE 2017-9805

Go 60 26 Updated Aug 31, 2020

A simple variable based template editor using handlebarjs+strapdownjs. The idea is to use variables in markdown based files to easily replace the variables with content. Data is saved temporarily i…

JavaScript 257 64 Updated Aug 30, 2023

Wayback Machine OSINT Framework

Go 231 42 Updated Jul 28, 2024