Skip to content
View 0ktavandi's full-sized avatar

Block or report 0ktavandi

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

This repo tries to explain complex security vulnerabilities in simple terms that even a five-year-old can understand!

366 39 Updated Aug 17, 2023

Simple tool to scan a website for (DOM-based) XSS vulnerabilities and Open Redirects.

JavaScript 226 33 Updated Dec 2, 2024

This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter

2,706 613 Updated Feb 10, 2024

Cloud, WEB, API

123 23 Updated Dec 2, 2024

Top disclosed reports from HackerOne

Python 12 1 Updated Oct 27, 2024

A Burp Suite extension to add OpenAI (GPT) on Burp and help you with your Bug Bounty recon to discover endpoints, params, URLs, subdomains and more!

Python 835 98 Updated May 3, 2023

Python Script to Bypass Cloudflare Protection

Python 8 2 Updated Dec 6, 2023

Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!

Go 847 109 Updated Jan 12, 2024

もしSOPがなかったらどうなるか,というLTに使用したデモです。

PHP 1 Updated Feb 16, 2021

List of tools for monitoring and analyze everything

300 42 Updated Nov 10, 2024

A curated list of the most important and useful resources about elasticsearch: articles, videos, blogs, tips and tricks, use cases. All about Elasticsearch!

4,897 559 Updated Jul 16, 2024

ZincSearch . A lightweight alternative to elasticsearch that requires minimal resources, written in Go.

Go 17,061 743 Updated Oct 25, 2024

Lesser Known Web Attack Lab

CSS 330 47 Updated Feb 7, 2020

Awesome PHP Security Resources 🕶🐘🔐

966 89 Updated Sep 14, 2023

Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more

Go 1,541 160 Updated Nov 10, 2024

domain_hunter的高级版本,SRC挖洞、HW打点之必备!自动化资产收集;快速Title获取;外部工具联动;等等

Java 1,977 198 Updated Nov 27, 2024

Sometimes we want to fuzz a set of sub-domain URLs with a common wordlist. Fuzzing them one by one is a tedious task, not to mention the false positives we obtain in those results. To solve this pr…

Shell 51 7 Updated Jul 14, 2021

Burpsuite Extension to bypass 403 restricted directory

Python 1,569 204 Updated Jun 29, 2023

This tool downloads, installs, and configures a shiny new copy of Chromium.

HTML 449 80 Updated Apr 3, 2024

WSUSpect Proxy - a tool for MITM'ing insecure WSUS connections

Python 5 3 Updated Jan 30, 2017

TLS Fingerprinting

C 4 1 Updated Mar 1, 2017

A proof of concept that demonstrates asynchronous scanning for Java deserialization bugs

Python 54 16 Updated Mar 27, 2017

Packer is a tool for creating identical machine images for multiple platforms from a single source configuration.

Go 4 Updated Oct 13, 2017

The FindBugs plugin for security audits of Java web applications and Android applications. (Also work with Groovy and Scala projects)

Java 9 3 Updated Oct 2, 2017

A ruby script that scans for vulnerable & exploitable 3rd-party web applications on a network

Ruby 2 Updated Nov 16, 2017

Demonstration for the presentation Modern XSS

3 2 Updated Dec 13, 2017

Finds unknown classes of injection vulnerabilities

Java 2 Updated May 16, 2018
Next