manuel-sommer's Stars
Hack-with-Github/Awesome-Hacking
A collection of various awesome lists for hackers, pentesters and security researchers
louislam/uptime-kuma
A fancy self-hosted monitoring tool
GoogleContainerTools/distroless
🥑 Language focused docker images, minus the operating system.
vulhub/vulhub
Pre-Built Vulnerable Environments Based on Docker-Compose
peass-ng/PEASS-ng
PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)
projectdiscovery/nuclei-templates
Community curated list of templates for the nuclei engine to find security vulnerabilities.
s0md3v/Smap
a drop-in replacement for Nmap powered by shodan.io
cujanovic/SSRF-Testing
SSRF (Server Side Request Forgery) testing resources
ssl/ezXSS
ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.
six2dez/pentest-book
epsylon/xsser
Cross Site "Scripter" (aka XSSer) is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications.
roottusk/vapi
vAPI is Vulnerable Adversely Programmed Interface which is Self-Hostable API that mimics OWASP API Top 10 scenarios through Exercises.
tcosolutions/betterscan
Code Scanning/SAST/Static Analysis/Linting using many tools/Scanners with One Report (Code, IaC) - Betterscan
stamparm/DSVW
Damn Small Vulnerable Web
secureCodeBox/secureCodeBox
secureCodeBox (SCB) - continuous secure delivery out of the box
pwn0sec/PwnXSS
PwnXSS: Vulnerability (XSS) scanner exploit
CycloneDX/cdxgen
Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI/CD pipeline with automatic submission to Dependency Track server. GPT: https://chatgpt.com/g/g-673bfeb4037481919be8a2cd1bf868d2-cdxgen
dwisiswant0/ppfuzz
A fast tool to scan client-side prototype pollution vulnerability written in Rust. 🦀
santoru/shcheck
A basic tool to check security headers of a website
c0dejump/HawkScan
Security Tool for Reconnaissance and Information Gathering on a website. (python 3.x)
immauss/openvas
Containers for running the Greenbone Vulnerability Manager. Run as a single container with all services or separate single applications containers via docker-compose.
rfc-st/humble
A humble, and 𝗳𝗮𝘀𝘁, security-oriented HTTP headers analyzer.
appsecco/attacking-cloudgoat2
A step-by-step walkthrough of CloudGoat 2.0 scenarios.
fagray/vuejs2-laravel53-starter
A starter template for VueJs 2.0 with Laravel 5.4
EncodeGroup/Gopher
C# tool to discover low hanging fruits
pmckeown/dependency-track-maven-plugin
Maven plugin that integrates with a Dependency Track server to submit dependency manifests and optionally fail execution when vulnerable dependencies are found.
xadhrit/xira
xss vulnerability scanner and input fuzzing tool.
zapbot/zap-mgmt-scripts
ZAP Management Scripts
madpah/vexy
Generate VEX (Vulnerability Exploitability Exchange) CycloneDX documents
damiencarol/vulnerabilities
Python framework to manipulate vulnerabilities.