colinrubbert's Stars
AntonOsika/gpt-engineer
Platform to experiment with the AI Software Engineer. Terminal based. NOTE: Very different from https://gptengineer.app
oobabooga/text-generation-webui
A Gradio web UI for Large Language Models with support for multiple inference backends.
MobSF/Mobile-Security-Framework-MobSF
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
wader/fq
jq for binary formats - tool, language and decoders for working with binary and text formats
six2dez/reconftw
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
streaak/keyhacks
Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.
EdOverflow/can-i-take-over-xyz
"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.
tomnomnom/gf
A wrapper around grep, to help you grep for things
edoardottt/cariddi
Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more
tomnomnom/anew
A tool for adding new lines to files, skipping duplicates
hakluke/weaponised-XSS-payloads
XSS payloads designed to turn alert(1) into P1
1ndianl33t/Gf-Patterns
GF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic, interesting Subs) parameters grep
caido/caido
🚀 Caido releases, wiki and roadmap
securing/DumpsterDiver
Tool to search secrets in various filetypes.
ozguralp/gmapsapiscanner
bitquark/shortscan
An IIS short filename enumeration tool
tomnomnom/qsreplace
Accept URLs on stdin, replace all query string values with a user-supplied value
003random/getJS
A tool to fastly get all javascript sources/files
assetnote/surf
Escalate your SSRF vulnerabilities on Modern Cloud Environments. `surf` allows you to filter a list of hosts, returning a list of viable SSRF candidates.
AggressiveUser/AllForOne
AllForOne allows bug bounty hunters and security researchers to collect all Nuclei YAML templates from various public repositories,
s0md3v/SubGPT
Find subdomains with GPT, for free
Ignitetechnologies/Android-Penetration-Testing
ferreiraklet/airixss
Finding XSS during recon
sansatart/scrapts
Scrapts Scrapts Scrapts
hakluke/bug-bounty-standards
A list of edge cases that occur in bug bounty programs, conversations on how they should be handled. The goal is to standardise the way that specific situations are handled in bug bounties.
jhaddix/awsScrape
A tool to scrape the AWS ranges looking for a keyword in SSL certificate data.
nccgroup/cq
St74nger/writeup-miner
This is a useful Python script for extracting bug bounty or any other write-ups from Medium.com and other websites (soon).
jthack/metaprompter
Nexus0821/Harmonica
RecNet clone server made for cheating. (patched)