vizzdoom's Stars
jivoi/awesome-ml-for-cybersecurity
:octocat: Machine Learning for Cyber Security
s0md3v/XSStrike
Most advanced XSS scanner.
syhunt/huntpad
An open-source notepad with features that are particularly useful to penetration testers
vizzdoom/infosec-coffee
Infosec Coffee is a deliberately vulnerable web application to better understand interesting security flaws.
SafeBreach-Labs/BACE
Mapping of Binaries that allows Arbitrary Code Execution
ivanr/bulletproof-tls
vaquarkhan/Network-Anomaly-Detection-application
StartBootstrap/startbootstrap-business-casual
A Bootstrap HTML theme for business websites - created by Start Bootstrap
EgeBalci/HERCULES
HERCULES is a special payload generator that can bypass antivirus softwares.
oemunlock/burp_der_cert_to_android_cert
Converts DER certificates from Burp to store into Android cert store
YOURLS/YOURLS
🔗 The de facto standard self hosted URL shortener in PHP
linkedin/qark
Tool to look for several security related Android application vulnerabilities
elastic/ember
Elastic Malware Benchmark for Empowering Researchers
corkami/pocs
Proof of Concepts (PE, PDF...)
hashtopolis/server
Hashtopolis - distributed password cracking with Hashcat
sa7mon/S3Scanner
Scan for misconfigured S3 buckets across S3-compatible APIs!
JLospinoso/memcachedump
Use your Shodan API Key to dump all the contents of exposed memcached servers.
eth0izzle/bucket-stream
Find interesting Amazon S3 Buckets by watching certificate transparency logs.
PortSwigger/same-origin-method-execution
A BurpSuite plugin to detect Same Origin Method Execution vulnerabilities
mhelwig/apk-anal
Android APK analyzer based on radare2 and others.
stealth/fernmelder
async mass DNS resolver
gitleaks/gitleaks
Find secrets with Gitleaks 🔑
dxa4481/cssInjection
Stealing CSRF tokens with CSS injection (without iFrames)
logicalhacking/DVHMA
Damn Vulnerable Hybrid Mobile App (DVHMA) is an hybrid mobile app (for Android) that intentionally contains vulnerabilities.
nccgroup/AutoRepeater
Automated HTTP Request Repeating With Burp Suite
tijme/angularjs-csti-scanner
Automated client-side template injection (sandbox escape/bypass) detection for AngularJS v1.x.
ozzi-/consoleSSLlabs
Automate scans using Qualys SSL Labs
masatokinugawa/filterbypass
Browser's XSS Filter Bypass Cheat Sheet
Ne0nd0g/merlin
Merlin is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in golang.
ctfs/write-ups-2017
Wiki-like CTF write-ups repository, maintained by the community. 2017