Thanks to visit codestin.com
Credit goes to github.com

Skip to content
View tharaka190's full-sized avatar

Block or report tharaka190

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this userโ€™s behavior. Learn more about reporting abuse.

Report abuse
Showing results

๐ŸŒ™๐ŸฆŠ Dalfox is a powerful open-source XSS scanner and utility focused on automation.

Go 4,686 505 Updated Nov 14, 2025

jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice

Python 288 28 Updated Apr 9, 2024

A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface discovery in bug bounties and pentests

Go 5,520 632 Updated Nov 10, 2025

Extract URLs, paths, secrets, and other interesting bits from JavaScript

Go 1,689 127 Updated May 22, 2024

A tool to fastly get all javascript sources/files

Go 841 115 Updated Jul 4, 2025

GQLSpection - parses GraphQL introspection schema and generates possible queries

Python 94 12 Updated Mar 6, 2025

Prototype Pollution and useful Script Gadgets

1,541 215 Updated Jan 27, 2024

SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files

Python 2,311 421 Updated May 26, 2024

A Burp Suite Extension to extract interesting strings (key, secret, token, or etc.) from a webpage.

Python 306 62 Updated Jul 9, 2024
Python 6 4 Updated Feb 20, 2024

Finds graphql queries in javascript files

JavaScript 65 9 Updated May 18, 2024

PwnFox is a Firefox/Burp extension that provide usefull tools for your security audit.

JavaScript 1,234 113 Updated Aug 7, 2024

Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services used by your company and/or bug bounty targets!

Go 837 70 Updated Nov 12, 2025

๐Ÿ“š Collaborative cheatsheets for console commands

Markdown 60,064 4,903 Updated Nov 14, 2025

Terminal emulator by KDE

C++ 599 92 Updated Nov 14, 2025

Access large language models from the command-line

Python 10,215 675 Updated Nov 13, 2025

Here's how you can exit nano if you find yourself stuck in this terrible application.

14 3 Updated Feb 27, 2024

perhaps the best CORS middleware library for Go

Go 162 5 Updated Nov 1, 2025

Tool to parse subdomains from dmarc.live

Python 147 24 Updated Apr 19, 2024

Semi-automatic OSINT framework and package manager

Rust 2,327 208 Updated Jan 31, 2025

Easily gather all routes related to a NextJs application through parsing of _buildManifest.js

Go 68 4 Updated Dec 12, 2022

cherrytree

C++ 3,749 495 Updated Nov 10, 2025

"Can I take over XYZ?" โ€” a list of services and how to claim (sub)domains with dangling DNS records.

Python 5,443 781 Updated Feb 8, 2025

Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.

Python 1 Updated Aug 8, 2023

Scrape domain names from SSL certificates of arbitrary hosts

Go 687 91 Updated Mar 31, 2024

A simple SSRF-testing sheriff written in Go

Go 332 66 Updated Oct 31, 2024