Starred repositories
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous …
A curated list of awesome search engines useful during Penetration testing, Vulnerability assessments, Red/Blue Team operations, Bug Bounty and more
A list of resources for those interested in getting started in bug bounties
Fast passive subdomain enumeration tool.
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
Most government websites end in .gov or .mil, but many do not. This repo contains a list of public government domains and URLs that don't end in .gov or .mil.
A list of Google Dorks for Bug Bounty, Web Application Security, and Pentesting
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…
hakluke / fabric
Forked from danielmiessler/Fabricfabric is an open-source framework for augmenting humans using AI.
Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!
Turns any junk text into a usable wordlist for brute-forcing.
Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application
A multi-platform bug bounty toolkit that can be installed on Debian/Ubuntu or set up with Docker.
Vulnerability Scan with Nuclei
A GitHub action to install and setup a Linux distribution for the Windows Subsystem for Linux (WSL)
A curated directory of labs, tutorials, blog posts, and resources for learning Caido and web security.
An Out-of-Band XXE server for retrieving file contents over FTP.
This package is no more supported. I moved to vim.
A List Of Labs For People (Students) Who Want Learn OR Practice IT Security / Hacking / Penetration Testing In Ethical Way.
A quick ‘n dirty nmap parser written in Golang to convert nmap xml to IP:Port notation.
A collection of ZSH frameworks, plugins, themes and tutorials.
Useful shortcuts for bash/zsh
Kali Linux running in the browser with Xfce GUI using noVNC