Skip to content
View bayotop's full-sized avatar

Block or report bayotop

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Demo showcasing information leaks resulting from an IndexedDB same-origin policy violation in WebKit.

JavaScript 100 13 Updated Jan 16, 2023

Android library to verify the safety of user devices. Make sure that API calls from your app can be trusted. Instantly detect rooted devices, emulators, cloned apps, and other risk factors.

Kotlin 85 14 Updated Mar 22, 2023

GradeJS analyzes production Webpack bundles without having access to the source code of a website. Instantly see vulnerabilities, outdated packages, and more just by entering a web application URL.

TypeScript 408 14 Updated Nov 8, 2022

AppSec Ezine Public Repository.

1,209 105 Updated Nov 14, 2025

Viewgen is a ViewState tool capable of generating both signed and encrypted payloads with leaked validation keys

Python 652 88 Updated Feb 1, 2025

Fast web fuzzer written in Go

Go 15,280 1,497 Updated Apr 24, 2025

My simple Swiss Army knife for http/https troubleshooting and profiling.

Shell 3,833 241 Updated Nov 19, 2024

Easily turn single threaded command line applications into a fast, multi-threaded application with CIDR and glob support.

Python 1,276 188 Updated Sep 12, 2025

A collection of useful Serverless functions I use when pentesting

JavaScript 391 74 Updated Dec 9, 2022

A tool for exploring each layer in a docker image

Go 52,919 1,930 Updated Dec 15, 2025

Content released at NorthSec 2018 for my talk on prototype pollution

JavaScript 532 87 Updated May 25, 2024
Bikeshed 258 33 Updated Nov 24, 2025

A collection of templates for bug bounty reporting

430 98 Updated Dec 15, 2025

This repo contains hourly-updated data dumps of bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) that are eligible for reports

3,576 636 Updated Dec 18, 2025

Automatically exported from code.google.com/p/domxsswiki

HTML 548 80 Updated May 12, 2018

Browser's XSS Filter Bypass Cheat Sheet

1,146 214 Updated May 6, 2017

CVE 2017-9805

Go 60 26 Updated Aug 31, 2020

A simple variable based template editor using handlebarjs+strapdownjs. The idea is to use variables in markdown based files to easily replace the variables with content. Data is saved temporarily i…

JavaScript 255 64 Updated Aug 30, 2023

Wayback Machine OSINT Framework

Go 219 40 Updated Jul 28, 2024