wingzRED's Stars
httpie/cli
🥧 HTTPie CLI — modern, user-friendly command-line HTTP client for the API era. JSON support, colors, sessions, downloads, plugins & more.
shieldfy/API-Security-Checklist
Checklist of the most important security countermeasures when designing, testing, and releasing your API
ninenines/cowboy
Small, fast, modern HTTP server for Erlang/OTP.
epinna/tplmap
Server-Side Template Injection and Code Injection Detection and Exploitation Tool
aircrack-ng/rtl8812au
RTL8812AU/21AU and RTL8814AU driver with monitor mode and frame injection
dafthack/MailSniper
MailSniper is a penetration testing tool for searching through email in a Microsoft Exchange environment for specific terms (passwords, insider intel, network architecture information, etc.). It can be used as a non-administrative user to search their own email, or by an administrator to search the mailboxes of every user in a domain.
kleiton0x00/Advanced-SQL-Injection-Cheatsheet
A cheat sheet that contains advanced queries for SQL Injection of all types.
arthepsy/ssh-audit
SSH server auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc)
mrd0x/BITB
Browser In The Browser (BITB) Templates
m0rtem/CloudFail
Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network
besimorhino/powercat
netshell features all in version 2 powershell
Impact-I/reFlutter
Flutter Reverse Engineering Framework
WADComs/WADComs.github.io
WADComs is an interactive cheat sheet, containing a curated list of offensive security tools and their respective commands, to be used against Windows/AD environments.
BishopFox/eyeballer
Convolutional neural network for analyzing pentest screenshots
hackerscrolls/SecurityTips
ozguralp/gmapsapiscanner
xm1k3/cent
Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one place
Ullaakut/nmap
Idiomatic nmap library for go developers
Puliczek/awesome-list-of-secrets-in-environment-variables
🦄🔒 Awesome list of secrets in environment variables 🖥️
dsopas/MindAPI
Organize your API security assessment by using MindAPI. It's free and open for community collaboration.
blendin/3snake
Tool for extracting information from newly spawned processes
assetnote/commonspeak2
Leverages publicly available datasets from Google BigQuery to generate content discovery and subdomain wordlists
fcavallarin/htcap
htcap is a web application scanner able to crawl single page application (SPA) recursively by intercepting ajax calls and DOM changes.
veracode-research/solr-injection
Apache Solr Injection Research
Josue87/gotator
Gotator is a tool to generate DNS wordlists through permutations.
trufflesecurity/driftwood
Private key usage verification
jas502n/solr_rce
Apache Solr RCE via Velocity template
FSecureLABS/GWTMap
Cgboal/DomainParser
A very high performance Domain Name parser package in Go.
b3n-j4m1n/GetDorkedFiles
Google dork specified file(s) in specified website and optionally download the results.