FuckingDay's Stars
microsoft/terminal
The new Windows Terminal and the original Windows console host, all in the same place!
WerWolv/ImHex
🔍 A Hex Editor for Reverse Engineers, Programmers and people who value their retinas when working at 3 AM.
hashicorp/vault
A tool for secrets management, encryption as a service, and privileged access management
aquasecurity/trivy
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
ffuf/ffuf
Fast web fuzzer written in Go
google/sanitizers
AddressSanitizer, ThreadSanitizer, MemorySanitizer
paragonie/awesome-appsec
A curated list of resources for learning about application security
daffainfo/AllAboutBugBounty
All about bug bounty (bypasses, payloads, and etc)
six2dez/reconftw
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
secfigo/Awesome-Fuzzing
A curated list of fuzzing resources ( Books, courses - free and paid, videos, tools, tutorials and vulnerable applications to practice on ) for learning Fuzzing and initial phases of Exploit Development like root cause analysis.
devsecops/awesome-devsecops
An authoritative list of awesome devsecops tools with the help from community experiments and contributions.
google/fuzzing
Tutorials, examples, discussions, research proposals, and other resources related to fuzzing
google/security-research
This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-Google owned code.
wcventure/FuzzingPaper
Recent Fuzzing Paper
mandiant/flare-ida
IDA Pro utilities from FLARE team
inonshk/31-days-of-API-Security-Tips
This challenge is Inon Shkedy's 31 days API Security Tips.
AFLplusplus/LibAFL
Advanced Fuzzing Library - Slot your Fuzzer together in Rust! Scales across cores and machines. For Windows, Android, MacOS, Linux, no_std, ...
screetsec/Sudomy
Sudomy is a subdomain enumeration tool to collect subdomains and analyzing domains performing automated reconnaissance (recon) for bug hunting / pentesting
construct/construct
Construct: Declarative data structures for python that allow symmetric parsing and building
dsopas/MindAPI
Organize your API security assessment by using MindAPI. It's free and open for community collaboration.
secureCodeBox/secureCodeBox
secureCodeBox (SCB) - continuous secure delivery out of the box
googleprojectzero/0days-in-the-wild
Repository for information about 0-days exploited in-the-wild.
HexHive/retrowrite
RetroWrite -- Retrofitting compiler passes through binary rewriting
Microsvuln/Awesome-AFL
A curated list of different AFL forks and AFL inspired fuzzers with detailed equivalent academic papers and AFL-fuzzing tutorials
pengx17/logseq-dev-theme
</> Logseq dev theme
optiv/InsecureShop
An Intentionally designed Vulnerable Android Application built in Kotlin.
mandiant/Vulnerability-Disclosures
OWASP/www-project-code-review-guide
OWASP Code Review Guide Web Repository
claroty/ICSSecurityTools
Claroty's Public Tools
hazgon/smart-notes-wiki