AshiqurEmon
Security instructor, security researcher,Penetration tester,CTF player and bug Bounty Hunter resume:
Pinned Repositories
api_wordlist
A wordlist of API names for web application assessments
bugcrowd-levelup-subdomain-enumeration
This repository contains all the material from the talk "Esoteric sub-domain enumeration techniques" given at Bugcrowd LevelUp 2017 virtual conference
burp
CVE-2024-4358
Progress Telerik Report Server pre-authenticated RCE chain (CVE-2024-4358/CVE-2024-1800)
dirsearch
Web path scanner
fuzz_template
fuzzing-templates
Community curated list of nuclei templates for finding "unknown" security vulnerabilities.
nuclei_templates
Portswigger-Lab-Solutions-guides
Recon_2023
AshiqurEmon's Repositories
AshiqurEmon/nuclei_templates
AshiqurEmon/Portswigger-Lab-Solutions-guides
AshiqurEmon/Recon_2023
AshiqurEmon/api_wordlist
A wordlist of API names for web application assessments
AshiqurEmon/burp
AshiqurEmon/CVE-2024-4358
Progress Telerik Report Server pre-authenticated RCE chain (CVE-2024-4358/CVE-2024-1800)
AshiqurEmon/dirsearch
Web path scanner
AshiqurEmon/fuzz_template
AshiqurEmon/fuzzing-templates
Community curated list of nuclei templates for finding "unknown" security vulnerabilities.
AshiqurEmon/Gf-Patterns
GF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic, interesting Subs) parameters grep
AshiqurEmon/gf-tool-patterns
some custom gf tool pattern matcher
AshiqurEmon/HowToHunt
Collection of methodology and test case for various web vulnerabilities.
AshiqurEmon/kataana_Expert
AshiqurEmon/lazys3
AshiqurEmon/My-Pentest-Reports
I will try to upload my pentest reports in this repository
AshiqurEmon/My-scripts
some fun scripts to increase efficiency in bug hunting recon
AshiqurEmon/N-T
AshiqurEmon/nuclei-templates
Community curated list of templates for the nuclei engine to find security vulnerabilities.
AshiqurEmon/OWASP-Testing-Checklist
OWASP based Web Application Security Testing Checklist is an Excel based checklist which helps you to track the status of completed and pending test cases.
AshiqurEmon/PassList
👍 Awesome password to hack
AshiqurEmon/Payoads-for-bug-hunters
AshiqurEmon/Priv-escalation-shell-and-reverse-shell
AshiqurEmon/SecLists
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
AshiqurEmon/sub
AshiqurEmon/sub_t_over
AshiqurEmon/subdomain_takeover
AshiqurEmon/title-extractor
AshiqurEmon/Tryhackme_network_pentest
AshiqurEmon/Web-Cache-Vulnerability-Scanner
Web Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning. It is developed by Hackmanit GmbH (http://hackmanit.de/).
AshiqurEmon/xss-payloads