Skip to content
View 0xDark0's full-sized avatar

Block or report 0xDark0

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Python 71,438 16,185 Updated Nov 2, 2025

Hunt down social media accounts by username across social networks

Python 70,111 8,233 Updated Nov 6, 2025

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…

PHP 66,736 24,751 Updated Nov 6, 2025

A cat(1) clone with wings.

Rust 55,704 1,400 Updated Nov 3, 2025

30 days of JavaScript programming challenge is a step-by-step guide to learn JavaScript programming language in 30 days. This challenge may take more than 100 days, please just follow your own pace…

JavaScript 45,559 10,367 Updated Nov 3, 2025

Full reference of LinkedIn answers 2024 for skill assessments (aws-lambda, rest-api, javascript, react, git, html, jquery, mongodb, java, Go, python, machine-learning, power-point) linkedin excel t…

Python 28,659 13,131 Updated Nov 5, 2025

Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the …

Go 25,351 2,936 Updated Nov 5, 2025

A collection of awesome penetration testing resources, tools and other shiny things

24,320 4,659 Updated Jul 1, 2025

Find, verify, and analyze leaked credentials

Go 23,086 2,127 Updated Nov 6, 2025

Checklist of the most important security countermeasures when designing, testing, and releasing your API

23,083 2,663 Updated May 7, 2025

A little tool to play with Windows security

C 20,957 3,988 Updated May 11, 2025

PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)

C# 18,663 3,306 Updated Nov 4, 2025

SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.

Python 15,774 2,674 Updated Dec 15, 2024

Fast web fuzzer written in Go

Go 15,038 1,483 Updated Apr 24, 2025

A collection of hacking tools, resources and references to practice ethical hacking.

14,739 1,670 Updated Oct 16, 2023

Most advanced XSS scanner.

Python 14,448 2,032 Updated Apr 26, 2025

In-depth attack surface mapping and asset discovery

Go 13,739 2,058 Updated Nov 5, 2025

Web path scanner

Python 13,605 2,403 Updated Oct 20, 2025

Fast passive subdomain enumeration tool.

Go 12,499 1,458 Updated Nov 5, 2025

GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems

HTML 12,279 1,449 Updated Sep 17, 2025

A list of resources for those interested in getting started in bug bounties

11,594 1,999 Updated Jul 23, 2024

Fast subdomains enumeration tool for penetration testers

Python 10,676 2,194 Updated Aug 2, 2024

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

PowerShell 9,567 2,537 Updated Apr 25, 2024

Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.

PHP 8,722 2,118 Updated Nov 10, 2023

A powerful and open-source toolkit for hackers and security automation - 安全行业从业者自研开源扫描器合辑

8,678 2,413 Updated Oct 9, 2025

The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

Dockerfile 8,516 1,504 Updated Nov 3, 2025

reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous …

HTML 8,269 1,275 Updated Feb 24, 2025

Scripted Local Linux Enumeration & Privilege Escalation Checks

Shell 7,680 2,028 Updated Sep 6, 2023

🎯 Cross Site Scripting ( XSS ) Vulnerability Payload List

7,678 1,880 Updated Jul 18, 2024

proxychains - a tool that forces any TCP connection made by any given application to follow through proxy like TOR or any other SOCKS4, SOCKS5 or HTTP(S) proxy. Supported auth-types: "user/pass" fo…

C 7,523 669 Updated Jun 8, 2024
Next