Skip to content
View drak3hft7's full-sized avatar
  • Bergamo, Italy

Block or report drak3hft7

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Community curated list of templates for the nuclei engine to find security vulnerabilities.

JavaScript 12,518 3,529 Updated Jun 16, 2026
PostScript 8 Updated Feb 28, 2025

Reversino is a tool for finding subdomains from IP ranges or CIDR subnets.

Python 8 2 Updated Nov 18, 2024

PDF Files for Pentesting

15 3 Updated Jun 5, 2024

The OSINT project, the main idea of which is to collect all the possible Google dorks search combinations and to find the information about the specific web-site: common admin panels, the widesprea…

Shell 1,728 265 Updated Jul 10, 2025

A powerful bash script for massive XSS scanning leveraging Brute Logic's KNOXSS API

Shell 82 14 Updated Jan 24, 2025

403/401 Bypass Methods + Bash Automation + Your Support ;)

Shell 1,638 310 Updated Jun 6, 2022

Fetch all the URLs that the Wayback Machine knows about for a domain

Go 4,474 545 Updated May 1, 2024

Pentest Report Generator

JavaScript 2,834 506 Updated Jun 16, 2026

SessionProbe is a multi-threaded tool designed for penetration testing and bug bounty hunting. It evaluates user privileges in web applications by taking a session token and checking access across …

Go 463 37 Updated Mar 28, 2024

Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens that are already exploitable, so we can report them. We wis…

Python 5,423 979 Updated Mar 13, 2026

Nuclei (https://github.com/projectdiscovery/nuclei) templates for extracting juicy info from web pages

197 28 Updated Sep 7, 2023

Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.

Python 566 86 Updated Mar 8, 2025

Pass list of urls with FUZZ in and it will check if it has found a potential SSRF.

Go 112 23 Updated Feb 14, 2022

A next-generation crawling and spidering framework.

Go 17,028 1,144 Updated Jun 16, 2026

1337 Wordlists for Bug Bounty Hunting

Go 968 183 Updated Jun 14, 2026

Ressources for bug bounty hunting

1,934 591 Updated Dec 1, 2022

Fetches domains from https://crt.sh/

Shell 7 Updated Sep 16, 2022

Here I gather all the resources about hacking that I find interesting

Ruby 270 48 Updated Jun 7, 2026

reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous …

HTML 8,694 1,330 Updated Mar 21, 2026

Simple tool to gather domains from crt.sh using the organization name

Python 102 22 Updated Dec 16, 2021

One place for all the default credentials to assist the Blue/Red teamers identifying devices with default password 🛡️

Python 6,607 777 Updated May 29, 2026

A Fuzzer for OpenRedirect issues

Python 5 2 Updated Apr 19, 2020

Checklist of the most important security countermeasures when designing, testing, and releasing your API

23,258 2,660 Updated Feb 10, 2026
Python 10 8 Updated May 6, 2026

Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules Port scanning; Fuzz, HW, awesome BugBounty( ͡° ͜ʖ ͡°)...

Go 6,127 717 Updated Jul 12, 2024

Uncover forgotten secrets and bring them back to life, haunting security and operations teams.

Go 211 44 Updated Jun 14, 2026

bypass-url-parser

Python 1,134 122 Updated Jun 13, 2026
Next