Roman160's Stars
danielmiessler/SecLists
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
projectdiscovery/nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
muesli/duf
Disk Usage/Free Utility - a better 'df' alternative
ffuf/ffuf
Fast web fuzzer written in Go
owasp-amass/amass
In-depth attack surface mapping and asset discovery
shmilylty/OneForAll
OneForAll是一款功能强大的子域收集工具
yogeshojha/rengine
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous monitoring, backed by a database, and simple yet intuitive User Interface. reNgine makes it easy for penetration testers to gather reconnaissance with minimal configuration and with the help of reNgine's correlation, it just makes recon effortless.
payloadbox/xss-payload-list
🎯 Cross Site Scripting ( XSS ) Vulnerability Payload List
KathanP19/HowToHunt
Collection of methodology and test case for various web vulnerabilities.
michenriksen/aquatone
A Tool for Domain Flyovers
lc/gau
Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.
internetwache/GitTools
A repository with 3 tools for pwn'ing websites with .git repositories available
brainfucksec/kalitorify
Transparent proxy through Tor for Kali Linux OS
appsecco/the-art-of-subdomain-enumeration
This repository contains all the supplement material for the book "The art of sub-domain enumeration"
robre/scripthunter
Tool to find JavaScript files on Websites
PacktPublishing/Hands-On-Penetration-Testing-with-Python
Hands-On Penetration Testing with Python, published by Packt
app-generator/flask-corona-dark
Flask Dashboard - Corona Dark Design | AppSeed
jhaddix/sslScrape
SSLScrape | A scanning tool for scaping hostnames from SSL certificates.
jhaddix/LinkFinder
A python script that finds endpoints in JavaScript files
jhaddix/lazyrecon
This script is intended to automate your reconnaissance process in an organized fashion
jhaddix/LazyFuzzer
Ease-of-use extension for Web Application penetration testing
sparshkulshrestha/LazyRecon
Subdomain discovery using Sublist3r, certspotter, crt.sh , censys and amass . Subdomain bruteforcing using Gobuster and Resolve hosts using tomnomnom's filter-resolved.
jhaddix/ScanCannon
Combines the speed of masscan with the reliability and detailed enumeration of nmap
chttrjeankr/visitor-management-system
Visitor Check In/Check Out portal for visitors to any Organization