Trending repositories for topic bug-bounty
A collection of various awesome lists for hackers, pentesters and security researchers
Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services used by your company and/or bug bounty targets!
Open source templates you can use to bootstrap your security programs
A list of resources for those interested in getting started in bug bounties
Quelques conseils autour des obligations légales, fiscales et juridique pour la pratique du Bug Bounty en France
A comprehensive guide for web application penetration testing and bug bounty hunting, covering methodologies, tools, and resources for identifying and exploiting vulnerabilities.
API Security Project aims to present unique attack & defense methods in API Security field
A tool to find subdomains and interesting things hidden inside, external Javascript files of page, folder, and Github.
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous mon...
"Essential Kali Linux commands for ethical hackers and penetration testers."
📦 Largest Collection of Multi-Platform (Android|Linux|Windows) Pre-Compiled (+ UPXed) Static Binaries (incl. Build Scripts) :: https://bin.ajam.dev
Delve into a comprehensive checklist, your ultimate companion for Android app penetration testing. Identify vulnerabilities in network, data, storage, and permissions effortlessly. Boost security skil...
Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services used by your company and/or bug bounty targets!
"Essential Kali Linux commands for ethical hackers and penetration testers."
Open source templates you can use to bootstrap your security programs
Quelques conseils autour des obligations légales, fiscales et juridique pour la pratique du Bug Bounty en France
📦 Largest Collection of Multi-Platform (Android|Linux|Windows) Pre-Compiled (+ UPXed) Static Binaries (incl. Build Scripts) :: https://bin.ajam.dev
Delve into a comprehensive checklist, your ultimate companion for Android app penetration testing. Identify vulnerabilities in network, data, storage, and permissions effortlessly. Boost security skil...
🕵️ OSINT Tools for gathering information and actions forensics 🕵️
🔨 List all IP ranges from: Google (Cloud & GoogleBot), Bing (Bingbot), Amazon (AWS), Microsoft, Oracle (Cloud), GitHub, Facebook (Meta), OpenAI (GPTBot) and other with daily updates.
A comprehensive guide for web application penetration testing and bug bounty hunting, covering methodologies, tools, and resources for identifying and exploiting vulnerabilities.
API Security Project aims to present unique attack & defense methods in API Security field
A tool to find subdomains and interesting things hidden inside, external Javascript files of page, folder, and Github.
A collection of various awesome lists for hackers, pentesters and security researchers
A collection of various awesome lists for hackers, pentesters and security researchers
A list of resources for those interested in getting started in bug bounties
Open source templates you can use to bootstrap your security programs
Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services used by your company and/or bug bounty targets!
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
Applied offensive security with Rust - https://kerkour.com/black-hat-rust
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous mon...
📦 Largest Collection of Multi-Platform (Android|Linux|Windows) Pre-Compiled (+ UPXed) Static Binaries (incl. Build Scripts) :: https://bin.ajam.dev
A tool to find subdomains and interesting things hidden inside, external Javascript files of page, folder, and Github.
This is a useful Python script for extracting bug bounty or any other write-ups from Medium.com and other websites (soon).
🔨 List all IP ranges from: Google (Cloud & GoogleBot), Bing (Bingbot), Amazon (AWS), Microsoft, Oracle (Cloud), GitHub, Facebook (Meta), OpenAI (GPTBot) and other with daily updates.
A comprehensive guide for web application penetration testing and bug bounty hunting, covering methodologies, tools, and resources for identifying and exploiting vulnerabilities.
"Essential Kali Linux commands for ethical hackers and penetration testers."
This is a useful Python script for extracting bug bounty or any other write-ups from Medium.com and other websites (soon).
Open source templates you can use to bootstrap your security programs
📦 Largest Collection of Multi-Platform (Android|Linux|Windows) Pre-Compiled (+ UPXed) Static Binaries (incl. Build Scripts) :: https://bin.ajam.dev
Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services used by your company and/or bug bounty targets!
Delve into a comprehensive checklist, your ultimate companion for Android app penetration testing. Identify vulnerabilities in network, data, storage, and permissions effortlessly. Boost security skil...
Quelques conseils autour des obligations légales, fiscales et juridique pour la pratique du Bug Bounty en France
Hastly written Tools & Scripts for Personal Use Cases & Bug Bounties
A collection of various awesome lists for hackers, pentesters and security researchers. With repository stars⭐ and forks🍴
🔨 List all IP ranges from: Google (Cloud & GoogleBot), Bing (Bingbot), Amazon (AWS), Microsoft, Oracle (Cloud), GitHub, Facebook (Meta), OpenAI (GPTBot) and other with daily updates.
a list of awesome resources related to security and hacking of VoIP, WebRTC and VoLTE
A modern tool written in Python that automates your xss findings.
Crtsh Subdomain Enumeration | This bash script makes it easy to quickly save and parse the output from https://crt.sh website.
🕵️ OSINT Tools for gathering information and actions forensics 🕵️
crawls the website and finds broken social media links that can be hijacked
A collection of various awesome lists for hackers, pentesters and security researchers
Open source templates you can use to bootstrap your security programs
A list of resources for those interested in getting started in bug bounties
My collection of various security tools created mostly in Python and Bash. For CTFs and Bug Bounty.
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
A comprehensive guide for web application penetration testing and bug bounty hunting, covering methodologies, tools, and resources for identifying and exploiting vulnerabilities.
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous mon...
Applied offensive security with Rust - https://kerkour.com/black-hat-rust
🕵️ OSINT Tools for gathering information and actions forensics 🕵️
🔨 List all IP ranges from: Google (Cloud & GoogleBot), Bing (Bingbot), Amazon (AWS), Microsoft, Oracle (Cloud), GitHub, Facebook (Meta), OpenAI (GPTBot) and other with daily updates.
A collection of awesome one-liner scripts especially for bug bounty tips.
Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services used by your company and/or bug bounty targets!
The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf, masscan, nuclei, meg and many more!
Open source templates you can use to bootstrap your security programs
Dive into a handpicked selection of tools, guides, and tips tailored for beginners in Bug Bounty and Penetration Testing. 🐛🛡️
Cyber-Security Bible! Theory and Tools, Kali Linux, Penetration Testing, Bug Bounty, CTFs, Malware Analysis, Cryptography, Secure Programming, Web App Security, Cloud Security, Devsecops, Ethical Hack...
"Essential Kali Linux commands for ethical hackers and penetration testers."
This is a useful Python script for extracting bug bounty or any other write-ups from Medium.com and other websites (soon).
📦 Largest Collection of Multi-Platform (Android|Linux|Windows) Pre-Compiled (+ UPXed) Static Binaries (incl. Build Scripts) :: https://bin.ajam.dev
My collection of various security tools created mostly in Python and Bash. For CTFs and Bug Bounty.
Delve into a comprehensive checklist, your ultimate companion for Android app penetration testing. Identify vulnerabilities in network, data, storage, and permissions effortlessly. Boost security skil...
Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services used by your company and/or bug bounty targets!
Status Checker is a Python tool for swiftly checking the status of URLs. It categorizes responses by HTTP status codes, offering clear insights into website health. With async requests, color-coded ou...
🔨 List all IP ranges from: Google (Cloud & GoogleBot), Bing (Bingbot), Amazon (AWS), Microsoft, Oracle (Cloud), GitHub, Facebook (Meta), OpenAI (GPTBot) and other with daily updates.
List of domains in scope for bug bounties (HackerOne, Bugcrowd, etc.)
A comprehensive guide for web application penetration testing and bug bounty hunting, covering methodologies, tools, and resources for identifying and exploiting vulnerabilities.
Apache commons text - CVE-2022-42889 Text4Shell proof of concept exploit.
Crtsh Subdomain Enumeration | This bash script makes it easy to quickly save and parse the output from https://crt.sh website.
Open source templates you can use to bootstrap your security programs
Gaining the most elusive of tips. Add your input and let's collect them all!
Status Checker is a Python tool for swiftly checking the status of URLs. It categorizes responses by HTTP status codes, offering clear insights into website health. With async requests, color-coded ou...
Cyber-Security Bible! Theory and Tools, Kali Linux, Penetration Testing, Bug Bounty, CTFs, Malware Analysis, Cryptography, Secure Programming, Web App Security, Cloud Security, Devsecops, Ethical Hack...
Collection of (4000+) malicious rMQR Codes for Penetration testing, Vulnerability assessments, Red Team operations, Bug Bounty and more
A collection of various awesome lists for hackers, pentesters and security researchers
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous mon...
A list of resources for those interested in getting started in bug bounties
An automation tool that enumerates subdomains then filters out xss, sqli, open redirect, lfi, ssrf and rce parameters and then scans for vulnerabilities.
🕵️ OSINT Tools for gathering information and actions forensics 🕵️
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
The all-in-one browser extension for offensive security professionals 🛠
Applied offensive security with Rust - https://kerkour.com/black-hat-rust
The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf, masscan, nuclei, meg and many more!
A collection of awesome one-liner scripts especially for bug bounty tips.
Open source templates you can use to bootstrap your security programs
A comprehensive guide for web application penetration testing and bug bounty hunting, covering methodologies, tools, and resources for identifying and exploiting vulnerabilities.
Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services used by your company and/or bug bounty targets!
🔨 List all IP ranges from: Google (Cloud & GoogleBot), Bing (Bingbot), Amazon (AWS), Microsoft, Oracle (Cloud), GitHub, Facebook (Meta), OpenAI (GPTBot) and other with daily updates.
📦 Largest Collection of Multi-Platform (Android|Linux|Windows) Pre-Compiled (+ UPXed) Static Binaries (incl. Build Scripts) :: https://bin.ajam.dev
An automation tool that enumerates subdomains then filters out xss, sqli, open redirect, lfi, ssrf and rce parameters and then scans for vulnerabilities.
Hastly written Tools & Scripts for Personal Use Cases & Bug Bounties
Stalker, the Extensible Attack Surface Management tool.
Delve into a comprehensive checklist, your ultimate companion for Android app penetration testing. Identify vulnerabilities in network, data, storage, and permissions effortlessly. Boost security skil...
Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services used by your company and/or bug bounty targets!
Gaining the most elusive of tips. Add your input and let's collect them all!
"Essential Kali Linux commands for ethical hackers and penetration testers."
Simplify your life with leak detection in JavaScript. NipeJS streamlines the use of regex, making it effortless to uncover potential leaks.
CHOMTE.SH is a powerful shell script designed to automate reconnaissance tasks during penetration testing. It utilizes various Go-based tools to gather information and identify the attack surface, mak...
A modern tool written in Python that automates your xss findings.
This is a useful Python script for extracting bug bounty or any other write-ups from Medium.com and other websites (soon).
🕵️ OSINT Tools for gathering information and actions forensics 🕵️
🔨 List all IP ranges from: Google (Cloud & GoogleBot), Bing (Bingbot), Amazon (AWS), Microsoft, Oracle (Cloud), GitHub, Facebook (Meta), OpenAI (GPTBot) and other with daily updates.
Script that automates the installation of the main tools used for web application penetration testing and Bug Bounty.