kingcoolvikas's Stars
Idnan/bash-guide
A guide to learn bash
edoardottt/awesome-hacker-search-engines
A curated list of awesome search engines useful during Penetration testing, Vulnerability assessments, Red/Blue Team operations, Bug Bounty and more
ihebski/DefaultCreds-cheat-sheet
One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️
EdOverflow/can-i-take-over-xyz
"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.
Ignitetechnologies/Privilege-Escalation
This cheasheet is aimed at the CTF Players and Beginners to help them understand the fundamentals of Privilege Escalation with examples.
lijiejie/GitHack
A `.git` folder disclosure exploit
Az0x7/vulnerability-Checklist
This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter
kurogai/100-redteam-projects
Projects for security students
trickest/wordlists
Real-world infosec wordlists, updated regularly
hakluke/weaponised-XSS-payloads
XSS payloads designed to turn alert(1) into P1
trickest/inventory
Asset inventory of over 800 public bug bounty programs.
Proviesec/google-dorks
Useful Google Dorks for WebSecurity and Bug Bounty
ozguralp/gmapsapiscanner
ryh04x/CEH-Exam-Questions
Planning To Take Certified Ethical Hacker (CEH)? Here are github repo with 125 questions and answers to help you prep for the test
Hari-prasaanth/Web-App-Pentest-Checklist
A OWASP Based Checklist With 500+ Test Cases
tuhin1729/Bug-Bounty-Methodology
These are my checklists which I use during my hunting.
dn0m1n8tor/AndroidPentest101
The motive to build this repo is to help beginner to start learn Android Pentesting by providing a roadmap.
TheBinitGhimire/NtHiM
Now, the Host is Mine! - Super Fast Sub-domain Takeover Detection!
x1337loser/Dependency-Confusion
All About Dependency Confusion Attack, (Detecting, Finding, Mitigating)
s3c-krd/s3cXSSer
This extension will help you to detect GET/POST based XSS vulnerability in any website easily
p1ay8y3ar/cve_monitor
Automatic monitor github cve using Github Actions
pdelteil/BugBountyReportTemplates
List of reporting templates I have used since I started doing BBH.
bugcrowd/templates
Repository to house markdown templates for researchers
Dheerajmadhukar/Lilly
Tool to find the real IP behind CDNs/WAFs like cloudflare using passive recon by retrieving the favicon hash. For the same hash value, all the possible IPs, PORTs and SSL/TLS Certs are searched to validate the target in-scope.
Akokonunes/Private-Nuclei-Templates
0xM5awy/WebApplicationSecurityWithPHP
This project is a personal learning, so you will find errors or disorganization, so if you find anything wrong, please let me know :)
shubhdhungana/bug_bounty_checklist
My Notes & Resources Of Bug Bounty Checklists
0xcrypto/purge
Public OSINT data
Gyanthakur/Dev_Profiles
faiqu3/BBrecon