Fear-over's Stars
crytic/not-so-smart-contracts
Examples of Solidity security issues
automata-network/mev-wiki
MEV Wiki
Supercycled/cake_sniper
EVM frontrunning tool
pcaversaccio/reentrancy-attacks
A chronological and (hopefully) complete list of reentrancy attacks to date.
Dheeraj12121/Airbnb-mern
julia-/room-booking-system
Room booking system built with Node.js and ReactJS
akshatshah21/Alohomora
A novel approach for security and user experience of Graphical Password Authentication.
RishabhPachori/Graphical-Password-Authentication
reddelexc/hackerone-reports
Top disclosed reports from HackerOne
HashLips/hashlips_art_engine
HashLips Art Engine is a tool used to create multiple different instances of artworks based on provided layers.
sushiwushi/bug-bounty-dorks
List of Google Dorks for sites that have responsible disclosure program / bug bounty program
tanprathan/MobileApp-Pentest-Cheatsheet
The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration testing topics.
Ignitetechnologies/Android-Penetration-Testing
saeidshirazi/awesome-android-security
A curated list of Android Security materials and resources For Pentesters and Bug Hunters
crytic/slither
Static Analyzer for Solidity and Vyper
dolevf/Damn-Vulnerable-GraphQL-Application
Damn Vulnerable GraphQL Application is an intentionally vulnerable GraphQL service implementation designed for learning about and practising GraphQL Security.
six2dez/reconftw
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
Dheerajmadhukar/karma_v2
β‘·β πππππ ππΈβ β’Ύ is a Passive Open Source Intelligence (OSINT) Automated Reconnaissance (framework)
R0X4R/Garud
An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters and scans for some low hanging vulnerabilities automatically.
harsh-bothra/Bheem
projectdiscovery/notify
Notify is a Go-based assistance package that enables you to stream the output of several tools (or read from a file) and publish it to a variety of supported platforms.
blindpentester/Interlace_scripts
This is a location where I wanted to share my Interlace scripts/examples for large/small size campaigns or fun automation for various other things I can think of.
0xPugal/One-Liners
A collection of one-liners for bug bounty hunting.
XalfiE/Bug-Bounty-Oneliners
Oneliners curated from my experience and from the internet
Elsfa7-110/Elsfa7110-Oneliner-bughunting
onceupon/Bash-Oneliner
A collection of handy Bash One-Liners and terminal tricks for data processing and Linux system maintenance.
trimstray/the-book-of-secret-knowledge
A collection of inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners, cli/web tools and more.
daffainfo/Oneliner-Bugbounty
A collection oneliner scripts for bug bounty
D4Vinci/One-Lin3r
Gives you one-liners that aids in penetration testing operations, privilege escalation and more
dwisiswant0/awesome-oneliner-bugbounty
A collection of awesome one-liner scripts especially for bug bounty tips.