Pinned Repositories
Advanced-SQL-Injection-Cheatsheet
A cheat sheet that contains advanced queries for SQL Injection of all types.
agarthaPayloadGenerator
a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to spot authentication/authorization issues, and converts Http requests to Javascript for further XSS exploitation and more.
Blisqy
Version 0.2 - Exploit Time-based blind-SQL injection in HTTP-Headers (MySQL/MariaDB).
BrowserSnatch
This project steals important data from all chromium and gecko browsers installed in the system and gather the data in a stealer db to be exfiltrated out.
bug-bounty
My personal bug bounty toolkit.
CloudFlareFucker
Coffinxp_payloads
cve-2024-6387-poc
32-bit PoC for CVE-2024-6387 "regreSSHion" -- mirror of the original 7etsuo/cve-2024-6387-poc
dnscan
GhostLoader
Evasive shellcode loader
highchoice's Repositories
highchoice/Advanced-SQL-Injection-Cheatsheet
A cheat sheet that contains advanced queries for SQL Injection of all types.
highchoice/agarthaPayloadGenerator
a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to spot authentication/authorization issues, and converts Http requests to Javascript for further XSS exploitation and more.
highchoice/Blisqy
Version 0.2 - Exploit Time-based blind-SQL injection in HTTP-Headers (MySQL/MariaDB).
highchoice/BrowserSnatch
This project steals important data from all chromium and gecko browsers installed in the system and gather the data in a stealer db to be exfiltrated out.
highchoice/bug-bounty
My personal bug bounty toolkit.
highchoice/CloudFlareFucker
highchoice/Coffinxp_payloads
highchoice/cve-2024-6387-poc
32-bit PoC for CVE-2024-6387 "regreSSHion" -- mirror of the original 7etsuo/cve-2024-6387-poc
highchoice/dnscan
highchoice/GhostLoader
Evasive shellcode loader
highchoice/highchoice.github.io
highchoice/OOB-SQLi-payloads
Out of band SQL Injection payloads
highchoice/ParamSpider
Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing
highchoice/Payloads
Payload for bug bounty
highchoice/Shhhloader
Syscall Shellcode Loader (Work in Progress)
highchoice/webHunt
Web App bug hunting
highchoice/jshunter
JShunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive data, such as API endpoints and potential security vulnerabilities, making it an essential resource for developers and security researchers.
highchoice/kiterunner
Contextual Content Discovery Tool
highchoice/PayloadEncoder
Payload Encoder
highchoice/SqliSniperPLUS
highchoice/XSS-Bypass-Filters
highchoice/XSS_Payloads
highchoice/ZapProxy_Scripts
Custom scripts for ZAP Proxy