Skip to content
View fostane's full-sized avatar

Block or report fostane

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
32 results for source starred repositories written in Shell
Clear filter

Lynis - Security auditing tool for Linux, macOS, and UNIX-based systems. Assists with compliance testing (HIPAA/ISO27001/PCI DSS) and system hardening. Agentless, and installation optional.

Shell 15,216 1,575 Updated Jan 28, 2026

A repository with 3 tools for pwn'ing websites with .git repositories available

Shell 4,125 637 Updated Jun 14, 2023

Git All the Payloads! A collection of web attack payloads.

Shell 3,890 987 Updated May 15, 2023

Asset inventory of over 800 public bug bounty programs.

Shell 1,514 269 Updated Feb 14, 2025

An automation tool that enumerates subdomains then filters out xss, sqli, open redirect, lfi, ssrf and rce parameters and then scans for vulnerabilities.

Shell 1,267 208 Updated Jul 18, 2024

Self contained htaccess shells and attacks

Shell 1,076 195 Updated Feb 17, 2022

Automation for javascript recon in bug bounty.

Shell 1,066 184 Updated Sep 9, 2023

An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters and scans for some low hanging vulnerabilities automatically.

Shell 802 179 Updated Jul 4, 2023

ReconPi - A lightweight recon tool that performs extensive scanning with the latest tools.

Shell 728 111 Updated May 6, 2022

Awesome Bug bounty builder Project

Shell 674 132 Updated Feb 15, 2023

Reconnaissance Real IP address for Cloudflare Bypass

Shell 355 78 Updated Dec 28, 2021

Multiprocessing(Parallel)Subdomain Detect Script

Shell 330 84 Updated Jan 28, 2024

information gathering

Shell 281 88 Updated Jul 12, 2025

Crtsh Subdomain Enumeration | This bash script makes it easy to quickly save and parse the output from https://crt.sh website.

Shell 262 35 Updated Aug 31, 2024

An automation tool to install the most popular tools for bug bounty or pentesting.

Shell 123 29 Updated Dec 29, 2025

Wordlist for Hacking, Penetration Testing, Vulnerability Assessments and More

Shell 79 26 Updated Dec 2, 2025

Project Morya is just a collection of bash scripts that runs iteratively to carry out various tools and recon process & store output in an organized way

Shell 72 15 Updated Mar 5, 2022

Collaborative programming environment inside GitHub Actions – like Google Docs for hacking

Shell 71 9 Updated Apr 28, 2023

KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Ports.

Shell 59 9 Updated Sep 6, 2021

Basic Recon For Bug Bounty Hunter - "HuntTheBug" is Basic Scripts For Sub Domain Enumeration> Live Domain Enumeration > Sub Domain Hijack > URL + JavaScript Scan > Dir Brute Forcing > Open Port Che…

Shell 55 15 Updated Jan 10, 2022

IIS shortname scanner + bruteforce

Shell 54 8 Updated Feb 18, 2024

SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.

Shell 38 16 Updated Mar 7, 2021

Simple command shell collections

Shell 35 12 Updated Mar 7, 2021

My configs, tools and what not. For everytime that I blow up my vm....

Shell 18 10 Updated Jan 21, 2020

This includes all the templates of nuclei collected from different sources

Shell 18 11 Updated Dec 30, 2022

Scanner for Log4j RCE CVE-2021-44228

Shell 11 5 Updated Jul 6, 2022

you want to ffuf for domains?

Shell 6 1 Updated Feb 17, 2022
Shell 5 1 Updated Mar 20, 2022
Next