Skip to content
View r35tart's full-sized avatar
🌴
On vacation
🌴
On vacation

Block or report r35tart

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
71 results for source starred repositories written in Python
Clear filter

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Python 71,490 16,194 Updated Nov 2, 2025

Impacket is a collection of Python classes for working with network protocols.

Python 15,077 3,815 Updated Nov 7, 2025

Web path scanner

Python 13,614 2,402 Updated Oct 20, 2025

Fast subdomains enumeration tool for penetration testers

Python 10,684 2,195 Updated Aug 2, 2024

Credentials recovery project

Python 10,464 2,105 Updated Sep 18, 2025

OneForAll是一款功能强大的子域收集工具

Python 9,385 1,407 Updated Sep 12, 2025

You Know, For WEB Fuzzing ! 日站用的字典。

Python 8,138 2,480 Updated Nov 13, 2023

Web application fuzzer

Python 6,328 1,396 Updated Aug 18, 2024

爆破字典

Python 5,203 2,879 Updated Mar 21, 2022

A python script that finds endpoints in JavaScript files

Python 4,166 649 Updated Apr 13, 2024

巡风是一款适用于企业内网的漏洞快速应急,巡航扫描系统。

Python 3,586 1,328 Updated Apr 16, 2024

A fast sub domain brute tool for pentesters

Python 3,584 1,011 Updated Sep 15, 2022

A `.git` folder disclosure exploit

Python 3,460 814 Updated Feb 1, 2023

WPA/WPA2 密码字典,用于 wifi 密码暴力破解

Python 3,366 708 Updated Jan 25, 2022

This tool generates gopher link for exploiting SSRF and gaining RCE in various servers

Python 3,226 397 Updated Apr 18, 2023

The successor to reDuh, pwn a bastion webserver and create SOCKS proxies through the DMZ. Pivot and pwn.

Python 3,129 829 Updated Mar 6, 2025

JSFinder is a tool for quickly extracting URLs and subdomains from JS files on a website.

Python 2,871 424 Updated Nov 24, 2021

各种漏洞poc、Exp的收集或编写

Python 2,471 965 Updated Jun 24, 2025

A fast vulnerability scanner helps pentesters pinpoint possibly vulnerable targets from a large number of web servers

Python 2,351 592 Updated Dec 31, 2024

Stealing Signatures and Making One Invalid Signature at a Time

Python 2,334 480 Updated Aug 11, 2021

Firefox Decrypt is a tool to extract passwords from Mozilla (Firefox™, Waterfox™, Thunderbird®, SeaMonkey®) profiles

Python 2,317 327 Updated Oct 31, 2025

渗透测试插件化并发框架 / Open-sourced remote vulnerability PoC/EXP framework

Python 1,955 744 Updated Mar 28, 2022

Windows exploits, mostly precompiled. Not being updated. Check https://github.com/SecWiki/windows-kernel-exploits instead.

Python 1,897 587 Updated Sep 7, 2020

A tool to find subdomains and interesting things hidden inside, external Javascript files of page, folder, and Github.

Python 1,834 234 Updated May 20, 2024

Test tool for CVE-2020-1472

Python 1,795 358 Updated Jun 27, 2025

A .DS_Store file disclosure exploit. It parses .DS_Store file and downloads files recursively.

Python 1,695 297 Updated May 6, 2023

🕷️ A `.git` folder exploiting tool that is able to restore the entire Git repository, including stash, common branches and common tags.

Python 1,577 236 Updated Oct 31, 2025

Python2编写的struts2漏洞全版本检测和利用工具

Python 1,423 500 Updated May 7, 2019

MySQL Fake Server use to help MySQL Client File Reading and JDBC Client Java Deserialize

Python 1,350 160 Updated Nov 18, 2021

口令爆破字典,有键盘组合字典、拼音字典、字母与数字混合这三种类型

Python 1,286 332 Updated Oct 8, 2021
Next