000MB000's Stars
dolevf/Black-Hat-Bash
The Black Hat Bash book repository
tmux-plugins/tpm
Tmux Plugin Manager
LaurieWired/ReverseEngineeringAndroidMalware
This contains notes and slides for my talk on Reverse Engineering Android Malware
LaurieWired/ARTful
The ARTful library for dynamically modifying the Android Runtime
skylot/jadx
Dex to Java decompiler
Hackmanit/Web-Cache-Vulnerability-Scanner
Web Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning. It is developed by Hackmanit GmbH (http://hackmanit.de/).
VSCodium/vscodium
binary releases of VS Code without MS branding/telemetry/licensing
swisskyrepo/GraphQLmap
GraphQLmap is a scripting engine to interact with a graphql endpoint for pentesting purposes. - Do not use for illegal testing ;)
daveshap/BSHR_Loop
BSHR "Basher" Loop: Brainstorm, Search, Hypothesize, Refine
zigoo0/JSONBee
A ready to use JSONP endpoints/payloads to help bypass content security policy (CSP) of different websites.
six2dez/reconftw
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
mandatoryprogrammer/xsshunter-express
An easy-to-setup version of XSS Hunter. Sets up in five minutes and requires no maintenance!
KingOfBugbounty/KingOfBugBountyTips
Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens that are already exploitable, so we can report them. We wish to influence Onelinetips and explain the commands, for the better understanding of new hunters..
BishopFox/jsluice
Extract URLs, paths, secrets, and other interesting bits from JavaScript
tomnomnom/gron
Make JSON greppable!
akto-api-security/akto
Proactive, Open source API security → API discovery, Testing in CI/CD, Test Library with 150+ Tests, Add custom tests, Sensitive data exposure
codingo/fastsub
A custom built DNS bruteforcer with multi-threading, and handling of bad resolvers.
codingo/dooked
DNS and Target HTTP History Local Storage and Search
codingo/guides
A companion repo to accompany detailed guides and YouTube content to allow users to follow along
codingo/bbr
An open source tool to aid in command line driven generation of bug bounty reports based on user provided templates.
codingo/awsScrape
A tool to scrape the AWS ranges looking for a keyword in SSL certificate data.
michenriksen/aquatone
A Tool for Domain Flyovers
tomnomnom/meg
Fetch many paths for many hosts - without killing the hosts
projectdiscovery/httpx
httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.
projectdiscovery/subfinder
Fast passive subdomain enumeration tool.