Skip to content
View jeremybuis's full-sized avatar

Block or report jeremybuis

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Utility to manipulate codesigned application in Mac OS X. Demonstrate the use of csops system call.

C 84 15 Updated Mar 21, 2024

A collection of GCP IAM privilege escalation methods documented by the Rhino Security Labs team.

Python 420 78 Updated Oct 6, 2025

A curated list of awesome resources, tools, and other shiny things for LLM prompt engineering.

Python 1,560 180 Updated Feb 23, 2026

HTTP Request & Response Service, written in Python + Flask.

Python 13,544 1,911 Updated May 24, 2024

Pentesting cheatsheet with all the commands I learned during my learning journey. Will try to to keep it up-to-date.

C++ 1,514 247 Updated Nov 21, 2025

A collection of notes, checklists, writeups on bug bounty hunting and web application security.

Clojure 153 32 Updated Jun 30, 2022

Complete Practical Study Plan to become a successful cybersecurity engineer based on roles like Pentest, AppSec, Cloud Security, DevSecOps and so on...

4,927 616 Updated Dec 31, 2025

Segment's Threat Modeling training for our engineers

245 36 Updated May 4, 2021
1 Updated Feb 9, 2024

Gather and update all available and newest CVEs with their PoC.

HTML 7,695 957 Updated Apr 16, 2026

Modern tactical exploitation toolkit.

Python 859 125 Updated Mar 9, 2026

🍪 CookieMonster helps you detect and abuse vulnerable implementations of stateless sessions.

Go 969 73 Updated Jan 10, 2025

Red Teaming & Pentesting checklists for various engagements

2,655 517 Updated Jul 27, 2025

Free, libre, effective, and data-driven wordlists for all!

650 93 Updated Sep 10, 2021

OSWE Preparation

670 165 Updated Jul 25, 2022

📦 Make security testing of K8s, Docker, and Containerd easier.

Go 4,626 601 Updated Apr 13, 2026

An exquisite dns&http log server for verify SSRF/XXE/RFI/RCE vulnerability

Go 470 75 Updated Sep 16, 2023

A "malicious" DNS server for executing DNS Rebinding attacks on the fly (public instance running on rebind.network:53)

JavaScript 660 94 Updated Dec 17, 2021

A tool for IDN homograph attacks and detection.

Go 740 70 Updated Feb 1, 2021
Python 282 75 Updated Nov 12, 2021

A collection of browser-based side channel attack vectors.

759 55 Updated Mar 19, 2024

All Things Bug Bounty

115 18 Updated Jun 1, 2022

A list of interesting payloads, tips and tricks for bug bounty hunters.

6,424 1,612 Updated Sep 14, 2023

A container repository for my public web hacks!

JavaScript 2,022 274 Updated Oct 12, 2022

A scripted pipeline of tools to streamline the bug bounty/penetration test reconnaissance phase, so you can focus on chomping bugs.

Shell 397 69 Updated Apr 17, 2020

PHPGGC is a library of PHP unserialize() payloads along with a tool to generate them, from command line or programmatically.

PHP 3,784 547 Updated Sep 29, 2025
Next