Skip to content
View secfb's full-sized avatar
🎯
Focusing
🎯
Focusing

Block or report secfb

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
28 stars written in PHP
Clear filter

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…

PHP 70,958 25,007 Updated May 17, 2026

This is a webshell open source project

PHP 10,729 5,597 Updated Dec 24, 2024

Anonymous email forwarding

PHP 4,640 257 Updated May 12, 2026

PHPGGC is a library of PHP unserialize() payloads along with a tool to generate them, from command line or programmatically.

PHP 3,808 552 Updated Sep 29, 2025

All in one tool for Information Gathering, Vulnerability Scanning and Crawling. A must have tool for all penetration testers

PHP 3,657 955 Updated Jul 31, 2024

Shopware 6 is an open commerce platform based on Symfony Framework and Vue and supported by a worldwide community and more than 3.100 community extensions

PHP 3,344 1,172 Updated May 16, 2026

ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.

PHP 2,276 384 Updated Jan 8, 2026

AWSGoat : A Damn Vulnerable AWS Infrastructure

PHP 2,015 1,513 Updated May 20, 2025

A laboratory for learning secure web and mobile development in a practical manner.

PHP 978 461 Updated Sep 25, 2024

AppSec Payloads Arsenal for Pentration Tester and Bug Bounty Hunters

PHP 929 190 Updated Apr 1, 2026

Work in progress...

PHP 812 161 Updated Apr 29, 2026

PurpleLab is an efficient and readily deployable lab solution, providing a swift setup for cybersecurity professionals to test detection rules and undertake various security tasks, all accessible …

PHP 733 129 Updated Apr 2, 2026

OpenSource Poc && Vulnerable-Target Storage Box.

PHP 682 217 Updated Feb 6, 2023

Pentesting and Bug Bounty Notes, Cheetsheets and Guide for Ethical Hacker, Whitehat Pentesters and CTF Players.

PHP 629 88 Updated Apr 26, 2026

Blackfire Player is a powerful Web Crawling, Web Testing, and Web Scraper application. It provides a nice DSL to crawl HTTP services, assert responses, and extract data from HTML/XML/JSON responses.

PHP 495 58 Updated May 15, 2026

List of payloads and wordlists that are specifically crafted to identify and exploit vulnerabilities in target web applications.

PHP 441 149 Updated Mar 16, 2026

Toolkit to detect and keep track on Blind XSS, XXE & SSRF

PHP 340 80 Updated Aug 23, 2019

Cross-site scripting labs for web application security enthusiasts

PHP 337 48 Updated Jun 2, 2021

PowerShell Empire Web Interface

PHP 329 88 Updated May 20, 2023
PHP 250 75 Updated Jun 6, 2018

Whitebox source code review cheatsheet (Based on AWAE syllabus)

PHP 172 38 Updated Feb 16, 2022

少而精的常用字典,积累各种场景实现字典进化,只追求更简单更有效,不建议star,但建议pr。

PHP 143 39 Updated Jun 7, 2024

xss.js.org

PHP 70 61 Updated Jul 31, 2025

Vulnerable Code Snippets

PHP 46 14 Updated Apr 2, 2023

Simple Bulk Scan Scheduler for Acunetix in PHP

PHP 7 Updated Nov 14, 2021

The repo will contains code for web app exploiltation

PHP 1 1 Updated Feb 13, 2023