Lists (22)
Sort Name ascending (A-Z)
403 bypass
AI GBT
burp suite extension
cve
dork
fast scan
git dork
google dork
js
lfi
🚀 My stack
nuclei
open redirect
payloads
recon tools
sql
ssrf
ssti
subdomain
target
wordlst
xss
Stars
403Bypasser is a simple plugin that lets you bypass 403 status code by transforming HTTP requests with custom templates.
A fast, minimalistic scanner for time-based SQL injection (SQLi) detection – built in Go.
CHAOS - Recon data for Public Bug Bounty Programs | Stopped the action for some updates
SubOwner - A Simple tool check for subdomain takeovers.
Complete Solution for VAPT/AppSec and Pentesting Guide: Web | Mobile | API | Thick Client | Source Code Review | DevSecOps | Wireless | Network Pentesting | SAST | DAST etc...
A container repository for my public web hacks!
R3C0Nizer is the first ever CLI based menu-driven web application B-Tier recon framework.
⚡ Fast Web Security Scanner written in Rust based on Lua Scripts 🌖 🦀
Unwaf is a Go tool designed to help identify WAF bypasses using passive techniques. It automates the process of discovering the real origin IP behind a WAF/CDN by combining multiple discovery metho…
Tools and Techniques for Red Team / Penetration Testing
Powerfull Automatic Sql injection Tools Pack
hauditor is a tool designed to analyze the security headers returned by a web page.
autovpn is a tool for bug hunters to proxify their system, while running their automation tool. prevent the troubles that arises from their IP address being blocked.
reverse engineered and improved BSQLi script from Coffinxp
Full Nuclei automation script with logic explanation.
SpideyX a multipurpose Web Penetration Testing tool with asynchronous concurrent performance with multiple mode and configurations.
Automation tool to testing and confirm the xss vulnerability.
The recursive internet scanner for hackers. 🧡
🚀 XSSFUZZ - A tool for detecting XSS vulnerabilities in web applications.
《APT Individual Combat Guide》