takester's Stars
EricZimmerman/Registry
Full featured, offline Registry parser in C#
EricZimmerman/RECmd
Command line access to the Registry
EricZimmerman/SQLECmd
OWASP/RiskAssessmentFramework
The Secure Coding Framework
marco-liberale/PasteBomb
PasteBomb C2-less RAT
theowni/Damn-Vulnerable-RESTaurant-API-Game
Damn Vulnerable Restaurant is an intentionally vulnerable Web API game for learning and training purposes dedicated to developers, ethical hackers and security engineers.
semgrep/semgrep
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
wireghoul/graudit
grep rough audit - source code auditing tool
HackTricks-wiki/hacktricks
Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
Az0x7/vulnerability-Checklist
This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter
xnl-h4ck3r/GAP-Burp-Extension
Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist
CyberSecurityUP/GCP-Pentest-Checklist
ihebski/A-Red-Teamer-diaries
RedTeam/Pentest notes and experiments tested on several infrastructures related to professional engagements.
DERE-ad2001/Frida-Labs
The repo contains a series of challenges for learning Frida for Android Exploitation.
actuator/Android-Security-Exploits-YouTube-Curriculum
🔓A curated list of modern Android exploitation conference talks.
Narasimha1997/fake-sms
A simple command line tool using which you can skip phone number based SMS verification by using a temporary phone number that acts like a proxy.
mentebinaria/retoolkit
Reverse Engineer's Toolkit
lico-n/ZygiskFrida
Injects frida gadget using zygisk to bypass anti-tamper checks.
ptswarm/reFlutter
Flutter Reverse Engineering Framework
KoelhoSec/pimpmyP4wnP1
This is a simple bash script to fix errors with apt update, upgrade MetaSploit and run some upgrades to improve the system usability without breaking it, by using Pimpmykali script.
0xor0ne/awesome-list
Cybersecurity oriented awesome list
randorisec/MobileHackingCheatSheet
Basics on commands/tools/info on how to assess the security of mobile applications
fyoorer/ShadowClone
Unleash the power of cloud
n0kovo/n0kovo_subdomains
An extremely effective subdomain enumeration wordlist of 3,000,000 lines, crafted by harvesting SSL certs from the entire IPv4 space.
google/security-research
This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-Google owned code.
jakejarvis/awesome-shodan-queries
🔍 A collection of interesting, funny, and depressing search queries to plug into shodan.io 👩💻
Anugrahsr/Awesome-web3-Security
A curated list of web3Security materials and resources For Pentesters and Bug Hunters.
shieldfy/API-Security-Checklist
Checklist of the most important security countermeasures when designing, testing, and releasing your API
0xmaximus/Galaxy-Bugbounty-Checklist
Tips and Tutorials for Bug Bounty and also Penetration Tests.
CyberSecurityUP/Cloud-Security-Attacks
Azure and AWS Attacks