whalebone7's Stars
projectdiscovery/nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
reddelexc/hackerone-reports
Top disclosed reports from HackerOne
arkadiyt/bounty-targets-data
This repo contains hourly-updated data dumps of bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) that are eligible for reports
RhinoSecurityLabs/cloudgoat
CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool
ron190/jsql-injection
jSQL Injection is a Java application for automatic SQL database injection.
Karanxa/Bug-Bounty-Wordlists
A repository that includes all the important wordlists used while bug hunting.
Kyuu-Ji/Awesome-Azure-Pentest
A collection of resources, tools and more for penetration testing and securing Microsofts cloud platform Azure.
assetnote/nowafpls
Burp Plugin to Bypass WAFs through the insertion of Junk Data
AlbusSec/Penetration-List
Penetration-List: A comprehensive resource for testers, covering all types of vulnerabilities and materials used in Penetration Testing. Includes payloads, dorks, fuzzing materials, and offers in-depth theory sections. Visit our Medium profile for more information.
0xPugal/fuzz4bounty
1337 Wordlists for Bug Bounty Hunting
orwagodfather/WordList
glebarez/cero
Scrape domain names from SSL certificates of arbitrary hosts
neex/http2smugl
rarecoil/unwebpack-sourcemap
Extract uncompiled, uncompressed SPA code from Webpack source maps.
anshumanpattnaik/http-request-smuggling
HTTP Request Smuggling Detection Tool
c0dejump/HawkScan
Security Tool for Reconnaissance and Information Gathering on a website. (python 3.x)
pyn3rd/Spring-Boot-Vulnerability
Mehdi0x90/Web_Hacking
Bug Bounty Tricks and useful payloads and bypasses for Web Application Security.
zseano/InputScanner
pegasus-isi/pegasus
Pegasus Workflow Management System - Automate, recover, and debug scientific computations.
elttam/publications
xsuperbug/payloads
Tyaoo/picker
clarkvoss/AEM-List
Healdb/Elevate
Horizontal Domain Discovery
cve-sandbox/jquery
CVE Collection of jQuery XSS Payloads
lucasweb78/aws-v4-signer-java
aws-v4-signer-java is a lightweight, zero-dependency implementation of the AWS V4 signing algorithm required by many of the AWS services.
BitTheByte/BitMapper
Burp-suite Extension For finding .map files
ryarmst/jslinkparse
A script to parse output from JS Link Finder (Burp Extension)
SleepNotF0und/H1-Scopy
Hackerone API Integeration