Gam-7's Stars
rtl-airband/RTLSDR-Airband
Multichannel AM/NFM demodulator
ProHill/VRS-flights-db
Code to export Virtual Radar Server flight records and track logs to a MySQL database.
1N3/IntruderPayloads
A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and checklists.
GerbenJavado/LinkFinder
A python script that finds endpoints in JavaScript files
jobertabma/virtual-host-discovery
A script to enumerate virtual hosts on a server.
sqlmapproject/sqlmap
Automatic SQL injection and database takeover tool
pentester-io/commonspeak
Content discovery wordlists generated using BigQuery
projectdiscovery/subfinder
Fast passive subdomain enumeration tool.
vysecurity/DomLink
A tool to link a domain with registered organisation names and emails, to other domains.
Hacker0x01/hacker101
Source code for Hacker101.com - a free online web and mobile security class.
s0md3v/AwesomeXSS
Awesome XSS stuff
clouedoc/AutoSQLi
An automatic SQL Injection tool which takes advantage of ~DorkNet~ Googler, Ddgr, WhatWaf and sqlmap.
dschep/ntfy
🖥️📱🔔 A utility for sending notifications, on demand and when commands finish.
arkadiyt/bounty-targets-data
This repo contains hourly-updated data dumps of bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) that are eligible for reports
s0md3v/Arjun
HTTP parameter discovery suite.
s0md3v/XSStrike
Most advanced XSS scanner.
0xRadi/OWASP-Web-Checklist
OWASP Web Application Security Testing Checklist
jordanpotti/CloudScraper
CloudScraper: Tool to enumerate targets in search of cloud resources. S3 Buckets, Azure Blobs, Digital Ocean Storage Space.
SpiderLabs/Airachnid-Burp-Extension
A Burp Extension to test applications for vulnerability to the Web Cache Deception attack
sullo/nikto
Nikto web server scanner
PortSwigger/xss-validator
This is a burp intruder extender that is designed for automation and validation of XSS vulnerabilities.
epinna/tplmap
Server-Side Template Injection and Code Injection Detection and Exploitation Tool
michenriksen/aquatone
A Tool for Domain Flyovers
jhaddix/domain
Setup script for Regon-ng
ajxchapman/ReServ
A set of simple servers (currently HTTP/HTTPS and DNS) which allow configurable and scriptable responses to network requests.
random-robbie/Jira-Scan
CVE-2017-9506 - SSRF
EdOverflow/bugbountyguide
Bug Bounty Guide is a launchpad for bug bounty programs and bug bounty hunters.
neex/ffmpeg-avi-m3u-xbin
zseano/JS-Scan
a .js scanner, built in php. designed to scrape urls and other info
RedSiege/EyeWitness
EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.