Skip to content
View 0xHamam's full-sized avatar

Block or report 0xHamam

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

一款快速、全面、易用的页面信息提取工具,可快速发现和提取页面中的JS、URL和敏感信息。

Go 3,068 227 Updated Jan 5, 2024

⬆️ ☠️ 🔥 Automatic Linux privesc via exploitation of low-hanging fruit e.g. gtfobins, pwnkit, dirty pipe, +w docker.sock

Go 7,077 659 Updated Mar 12, 2024

一款适用于以HW行动/红队/渗透测试团队为场景的移动端(Android、iOS、WEB、H5、静态网站)信息收集扫描工具,可以帮助渗透测试工程师、攻击队成员、红队成员快速收集到移动端或者静态WEB站点中关键的资产信息并提供基本的信息输出,如:Title、Domain、CDN、指纹信息、状态信息等。

Python 3,491 411 Updated Dec 18, 2022

Action to detect if a secret is initially detected in a PR commit

PowerShell 11 Updated Jun 19, 2023

sqlmap Xplus 基于 sqlmap,对经典的数据库注入漏洞利用工具进行二开!

Python 696 65 Updated Jan 21, 2025

TInjA is a CLI tool for testing web pages for template injection vulnerabilities and supports 44 of the most relevant template engines for eight different programming languages.

Go 398 36 Updated May 8, 2025

The Template Injection Playground allows to test a large number of the most relevant template engines for template injection possibilities.

PHP 54 14 Updated Jul 22, 2025

Differential testing framework for HTTP implementations

Python 916 82 Updated Dec 9, 2025

A python script to scan for Apache Tomcat server vulnerabilities.

Python 884 106 Updated Nov 1, 2025

APIDetector: Efficiently scan for exposed Swagger endpoints across web domains and subdomains. Supports HTTP/HTTPS, multi-threading, and flexible input/output options. Ideal for API security testing.

Python 356 42 Updated Mar 28, 2025

My Code Audit Vulnerability Collection

10 Updated May 18, 2022

Cruzzer is a coverage-guided fuzzer combining a web application crawler.

Java 6 1 Updated Mar 7, 2025

收集的文章

Python 1 Updated Nov 10, 2021
HTML 1 Updated Aug 10, 2023
1 Updated Mar 26, 2020
1 Updated Jun 14, 2020

Get some useful data from Clouds for your targets

Go 1 1 Updated Aug 31, 2025
Python 2 Updated Jul 2, 2021

It's a vulnerability scanner tool for test Apache Path Traversal 👾

Python 1 1 Updated Aug 21, 2022
3 2 Updated Oct 31, 2023

API Security Project aims to present unique attack & defense methods in API Security field

1,429 251 Updated Mar 5, 2024

This repository will contain many mindmaps for cyber security technologies, methodologies, courses, and certifications in a tree structure to give brief details about them

8,486 1,648 Updated Jun 22, 2025

This repo is a PoC with to exploit CVE-2023-51467 and CVE-2023-49070 preauth RCE vulnerabilities found in Apache OFBiz.

Python 73 11 Updated Mar 24, 2024

A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.

6,421 1,313 Updated Mar 21, 2025

This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter

3,178 727 Updated Feb 10, 2024

A collection of awesome penetration testing resources, tools and other shiny things

24,780 4,696 Updated Dec 17, 2025

An awesome list of cybersecurity educational resources

653 91 Updated Nov 25, 2025

A GPT-empowered penetration testing tool

Python 9,746 1,430 Updated Dec 16, 2025

Command-line program to download videos from YouTube.com and other video sites

Python 139,212 10,575 Updated Nov 26, 2025

Master the command line, in one page

159,210 14,767 Updated Jun 25, 2024
Next