Skip to content
View 0xHamam's full-sized avatar

Block or report 0xHamam

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
61 results for source starred repositories
Clear filter

一款快速、全面、易用的页面信息提取工具,可快速发现和提取页面中的JS、URL和敏感信息。

Go 3,108 230 Updated Jan 5, 2024

⬆️ ☠️ 🔥 Automatic Linux privesc via exploitation of low-hanging fruit e.g. gtfobins, pwnkit, dirty pipe, +w docker.sock

Go 7,110 718 Updated Mar 12, 2024

一款适用于以HW行动/红队/渗透测试团队为场景的移动端(Android、iOS、WEB、H5、静态网站)信息收集扫描工具,可以帮助渗透测试工程师、攻击队成员、红队成员快速收集到移动端或者静态WEB站点中关键的资产信息并提供基本的信息输出,如:Title、Domain、CDN、指纹信息、状态信息等。

Python 3,518 410 Updated Dec 18, 2022

sqlmap Xplus 基于 sqlmap,对经典的数据库注入漏洞利用工具进行二开!

Python 711 66 Updated Jan 21, 2025

TInjA is a CLI tool for testing web pages for template injection vulnerabilities and supports 44 of the most relevant template engines for eight different programming languages.

Go 407 36 Updated Dec 22, 2025

The Template Injection Playground allows to test a large number of the most relevant template engines for template injection possibilities.

PHP 65 16 Updated Jan 3, 2026

Differential testing framework for HTTP implementations

Python 929 84 Updated Jan 21, 2026

A python script to scan for Apache Tomcat server vulnerabilities.

Python 889 107 Updated Jan 12, 2026

APIDetector: Efficiently scan for exposed Swagger endpoints across web domains and subdomains. Supports HTTP/HTTPS, multi-threading, and flexible input/output options. Ideal for API security testing.

Python 367 43 Updated Mar 28, 2025

My Code Audit Vulnerability Collection

10 Updated May 18, 2022

Cruzzer is a coverage-guided fuzzer combining a web application crawler.

Java 6 1 Updated Mar 7, 2025
HTML 1 Updated Aug 10, 2023
1 Updated Mar 26, 2020
1 Updated Jun 14, 2020
Python 2 Updated Jul 2, 2021
3 2 Updated Oct 31, 2023

API Security Project aims to present unique attack & defense methods in API Security field

1,435 251 Updated Mar 5, 2024

This repository will contain many mindmaps for cyber security technologies, methodologies, courses, and certifications in a tree structure to give brief details about them

8,791 1,691 Updated Mar 25, 2026

This repo is a PoC with to exploit CVE-2023-51467 and CVE-2023-49070 preauth RCE vulnerabilities found in Apache OFBiz.

Python 72 11 Updated Mar 24, 2024

A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.

6,549 1,320 Updated Jan 18, 2026

This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter

3,278 758 Updated Feb 10, 2024

A collection of awesome penetration testing resources, tools and other shiny things

25,641 4,767 Updated Jan 25, 2026

An awesome list of cybersecurity educational resources

700 94 Updated Jan 26, 2026

Automated Penetration Testing Agentic Framework Powered by Large Language Models

Python 12,244 2,089 Updated Feb 23, 2026

Command-line program to download videos from YouTube.com and other video sites

Python 139,944 10,603 Updated Feb 19, 2026

Master the command line, in one page

160,488 14,796 Updated Jun 25, 2024

😎 Awesome lists about all kinds of interesting topics

448,748 33,751 Updated Mar 9, 2026
Go 2 1 Updated Mar 15, 2020

Outline Server, developed by Jigsaw. The Outline Server is a proxy server that runs a Shadowsocks instance and provides a REST API for access key management.

TypeScript 6,190 873 Updated Feb 23, 2026

pagodo (Passive Google Dork) - Automate Google Hacking Database scraping and searching

Python 3,278 544 Updated Dec 1, 2025
Next