Skip to content
View gpxlnx's full-sized avatar

Highlights

  • Pro

Block or report gpxlnx

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

Turn any LLM into an autonomous pentester. You define the scope, the agent does the work, you review the findings.

JavaScript 465 77 Updated Jul 19, 2026

TUI de recon: descobre rotas esquecidas de um dominio via Wayback Machine (gau/waybackurls/CDX), com verificacao ao vivo via curl

Python 6 3 Updated Jul 30, 2026

A complete bug bounty workspace for HackerOne researchers. Includes scope enforcement, automated recon/vuln pipeline (400+ tools), report templates, CVE/CWE watchlists, and a local VM practice lab.…

Shell 266 49 Updated Jul 20, 2026

RdpCacheStitcher is a tool that supports forensic analysts in reconstructing useful images out of RDP cache bitmaps.

C++ 331 26 Updated Sep 3, 2023

A local knowledge base for bug bounty hunters. Paste a writeup URL or raw text → Claude extracts a structured technique card → you search, filter, and review it later when you're hunting.

HTML 3 2 Updated Apr 2, 2026

A simple HAR-based JavaScript recon automation kit for organizing JS files, endpoints, secrets, and gf-filtered attack surface during bug bounty hunting.

Python 18 5 Updated May 20, 2026

This is a lightweight manual recon and app-mapping checklist I use to avoid skipping obvious attack surfaces, roles, workflows, IDs, and bug classes during the first pass of a target.

10 2 Updated Jul 7, 2026

Bug bounty methodology, checklists, and hunting notes.

32 7 Updated Jul 10, 2026

CLAUDE.md configs and skills I use for bug bounty hunting with Claude Code

29 10 Updated Apr 14, 2026

Hundreds of models & providers. One command to find what runs on your hardware.

Rust 31,264 1,919 Updated Aug 9, 2026

Debian packaging skill with comprehensive policy, debhelper, and language-specific knowledge for Ruby, Python, Rust, and Go. I mostly use this for personal, private packages not OSS Debian packages…

Shell 4 2 Updated Jul 25, 2026

Burp Suite extension that automatically flags non-standard HTTP headers in proxy traffic, helping you spot custom application headers that may reveal internal infrastructure, debug endpoints, or at…

Java 7 1 Updated Jun 1, 2026
TypeScript 3 1 Updated Aug 5, 2026

Este repo documenta e gera um catálogo de técnicas de ofuscação de URL baseadas no componente userinfo da authority (o trecho antes do @),

Python 4 Updated Jul 6, 2026

Recon & pentest skill pack. CORS, XSS, SQLi, SSRF, RCE, WordPress, MCP, cloud, subdomain takeover, and more. Field-tested. MIT. Full write-up at hiago.sh

Python 1,053 191 Updated Jul 31, 2026

Autonomous AI agents for bug bounty hunting, 18 parallel hunters, built-in validator, zero setup.

Python 19 5 Updated Apr 16, 2026

OWASP Web Recon & Directory Discovery Platform

Python 996 188 Updated Aug 3, 2026
Python 3 2 Updated May 18, 2026

Tips and Tutorials for Bug Bounty and also Penetration Tests.

2,111 449 Updated Oct 7, 2025

Lightweight OSINT reconnaissance tool with web UI for bug bounty hunters and pentesters

HTML 12 2 Updated Jan 6, 2026

Ambiente de pentest assistido por IA integrando Claude Code + Caido MCP + 792 Skills + 35 Subagentes especializados. Do reconhecimento ao relatório em minutos, com persistência de findings por clie…

9 3 Updated Jul 15, 2026

Hermes cron job that monitors GitHub for new bounties matching Atlas Nexus capabilities and alerts via Telegram.

Shell 3 1 Updated May 17, 2026

Xfce Customization Guide (moved from my old repo) https://github.com/diws1/xfce-rice

CSS 10 2 Updated Apr 10, 2025

Make it easy to hunt a BUG

Shell 9 3 Updated Aug 7, 2026

Transparent anonymization proxy for AI-assisted pentesting. Strips IPs, credentials, hostnames and PII before they reach any LLM (Claude, OpenAI, OpenRouter). Local Ollama + regex detection. Per-en…

Python 648 76 Updated Jul 8, 2026

Stealth hybrid URL mapper

Shell 26 4 Updated May 1, 2026

817 structured cybersecurity skills for AI agents · Mapped to 6 frameworks: MITRE ATT&CK, NIST CSF 2.0, MITRE ATLAS, D3FEND, NIST AI RMF & MITRE F3 (Fight Fraud) · agentskills.io standard · Works w…

Python 27,488 3,329 Updated Aug 8, 2026
Next