easyrider's Stars
swisskyrepo/PayloadsAllTheThings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
danielmiessler/SecLists
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
open-guides/og-aws
📙 Amazon Web Services — a practical guide
logseq/logseq
A privacy-first, open-source platform for knowledge management and collaboration. Download link: http://github.com/logseq/logseq/releases. roadmap: http://trello.com/b/8txSM12G/roadmap
VikParuchuri/marker
Convert PDF to markdown quickly with high accuracy
zaproxy/zaproxy
The ZAP by Checkmarx Core project
OJ/gobuster
Directory/File, DNS and VHost busting tool written in Go
toniblyx/my-arsenal-of-aws-security-tools
List of open source tools for AWS security: defensive, offensive, auditing, DFIR, etc.
ihebski/DefaultCreds-cheat-sheet
One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️
riramar/Web-Attack-Cheat-Sheet
Web Attack Cheat Sheet
scottrogowski/code2flow
Pretty good call graphs for dynamic languages
Bo0oM/fuzz.txt
Potentially dangerous files
rafi/awesome-vim-colorschemes
Collection of awesome color schemes for Neo/vim, merged for quick use.
sa7mon/S3Scanner
Scan for misconfigured S3 buckets across S3-compatible APIs!
github/advisory-database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
stark0de/nginxpwner
Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.
lukemurraynz/awesome-azure-architecture
AWESOME-Azure-Architecture - https://aka.ms/AwesomeAzureArchitecture
assetnote/wordlists
Automated & Manual Wordlists provided by Assetnote
Hackmanit/Web-Cache-Vulnerability-Scanner
Web Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning. It is developed by Hackmanit GmbH (http://hackmanit.de/).
richardanaya/wasm-service
HTMX, WebAssembly, Rust, ServiceWorkers
momenbasel/keyFinder
Keyfinder🔑 is a tool that let you find keys while surfing the web!
dlegs/php-jpeg-injector
Injects php payloads into jpeg images
punishell/bbtips
BugBountyTips
mxm0z/awesome-sec-s3
A collection of awesome AWS S3 tools that collects and enumerates exposed S3 buckets
knassar702/lorsrf
Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load :artificial_satellite: :crab:
rastasheep/ubuntu-sshd
Dockerized Ubuntu SSH service
superhuman/rxxr2
knassar702/hacking-lab
Small Vulnerable Web App
0xdabbad00/security_incidents_from_caching
Collection of incidents resulting from caching issues
CandleHater/telegram-url-to-speech-bot
A Telegram bot that reads out text from a provided URL by using Google APIs.