encodedguy's Stars
MobSF/Mobile-Security-Framework-MobSF
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
0xInfection/Awesome-WAF
🔥 Web-application firewalls (WAFs) from security standpoint.
ihebski/DefaultCreds-cheat-sheet
One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️
projectdiscovery/naabu
A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface discovery in bug bounties and pentests
Mebus/cupp
Common User Passwords Profiler (CUPP)
pry0cc/axiom
The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf, masscan, nuclei, meg and many more!
m9rco/Genymotion_ARM_Translation
👾👾 Genymotion_ARM_Translation Please enjoy!
akto-api-security/akto
Proactive, Open source API security → API discovery, Testing in CI/CD, Test Library with 150+ Tests, Add custom tests, Sensitive data exposure
indianajson/can-i-take-over-dns
"Can I take over DNS?" — a list of DNS providers and how to claim vulnerable domains.
emadshanab/Nuclei-Templates-Collection
Nuclei Templates Collection
0ang3el/aem-hacker
byt3hx/jsleak
jsleak is a tool to find secret , paths or links in the source code during the recon.
Emoe/kxss
This a adaption of tomnomnom's kxss tool with a different output format
jthack/PIPE
Prompt Injection Primer for Engineers
cramppet/regulator
Automated learning of regexes for DNS discovery
Escape-Technologies/graphql-wordlist
The only GraphQL wordlist you'll ever need. Operations, field names, type names... Collected on more than 60k distinct GraphQL schemas.
SirBugs/Priv8-Nuclei-Templates
My Priv8 Nuclei Templates
assetnote/ghostbuster
Eliminate dangling elastic IPs by performing analysis on your resources within all your AWS accounts.
Nwqda/CVE-2022-26134
CVE-2022-26134 - Atlassian Confluence unauthenticated OGNL injection vulnerability (RCE).
ARPSyndicate/bug-bounty-domains
Domains belonging to the most reputed public bug bounty programs. [NOT FOR NON-MONETARY OR PRIVATE PROGRAMS]
moniik/poc_salesforce_lightning
Academic purposes only. Attack against Salesforce lightning with guest privilege.
ARPSyndicate/kenzer-templates
essential templates for kenzer [DEPRECATED]
clarkvoss/Nuclei-Templates
R3dy/ciscobruter
Brute-force Cisco SSL VPN
rashahacks/wordlists
encodedguy/bugbounty-cheatsheet
salty-ivy/SpreadVibe-publicMirror
A dynamic forming services that can generate forms from spreadsheets
encodedguy/reconasha
Automate your subdomain enumeration, subdomain takeover, management, nuclei, etc. in one go.
Crusher95574/toolsearch
List of Web security tools
encodedguy/rabbitmq-whoami
Python code to test default credentials for list of rabbitmq login dashboard