Skip to content
View blackb4bu's full-sized avatar

Block or report blackb4bu

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Beta Lists are currently in beta. Share feedback and report bugs.

Starred repositories

Showing results

Fast Go Application Scanner

Go 1,697 294 Updated Aug 26, 2024

An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws

Python 2,900 286 Updated Aug 25, 2024

Hidden parameters discovery suite

Rust 1,640 144 Updated Apr 30, 2024

🐍 A toolkit for testing, tweaking and cracking JSON Web Tokens

Python 5,260 662 Updated Aug 1, 2024

Go script for bypassing 403 forbidden

Go 138 24 Updated Aug 6, 2021

Book collection

80 19 Updated May 22, 2020

completely ridiculous API (crAPI)

Java 1,066 333 Updated Aug 29, 2024

AWS API Gateway management tool for creating on the fly HTTP pass-through proxies for unique IP rotation

Python 1,861 262 Updated Apr 3, 2023

Extension for Burp Suite which uses AWS API Gateway to rotate your IP on every request.

Python 227 26 Updated Aug 24, 2023

Automated & Manual Wordlists provided by Assetnote

CSS 1,270 129 Updated Jul 31, 2024

The all-in-one Desktop & Docker AI application with full RAG and AI Agent capabilities.

JavaScript 19,497 2,127 Updated Aug 30, 2024

10,000 H1 Disclosed Reports

Python 78 15 Updated May 10, 2024

A tool for extract Endpoints, URLs and Secrets from contents

Go 51 10 Updated Apr 23, 2024

Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.

Go 3,842 433 Updated Aug 21, 2024

Fetches javascript file from a list of URLS or subdomains.

Go 736 90 Updated May 21, 2023

Go scanner to find web cache poisoning vulnerabilities in a list of URLs

Go 117 23 Updated Feb 21, 2024

A basic tool to check for XSS vulnerabilities. It takes a list of URLs and checks if the parameter values appear in the response.

Go 27 4 Updated Jul 30, 2024

Docker toolbox with different scripts having for the objective to perform different kinds of attacks against JWT tokens.

Dockerfile 7 Updated Sep 1, 2024

POC about usage of JSON Web Tokens (JWT) in a secure way.

Java 28 12 Updated Mar 16, 2019

POC in order to explore and describe a proposition for the automation of the testing of the authorization matrix.

Java 9 2 Updated Nov 4, 2017

A list of resources for those interested in getting started in bug bounties

10,536 1,899 Updated Jul 23, 2024

Th3Inspector πŸ•΅οΈ Best Tool For Information Gathering πŸ”Ž

Perl 2,210 477 Updated Oct 8, 2023

GTFOBins is a curated list of Unix binaries that can be used to bypass local security restrictions in misconfigured systems

HTML 10,599 1,312 Updated Aug 23, 2024

Joplin - the secure note taking and to-do app with synchronisation capabilities for Windows, macOS, Linux, Android and iOS.

TypeScript 44,930 4,880 Updated Sep 3, 2024

πŸŒ™πŸ¦Š Dalfox is a powerful open-source XSS scanner and utility focused on automation.

Go 3,568 399 Updated Sep 1, 2024

A collection of tiny XSS Payloads that can be used in different contexts. https://tinyxss.terjanq.me

JavaScript 1,907 188 Updated Oct 15, 2021

A Python tool to automate some dorking stuff to find information disclosures.

Python 149 24 Updated Jul 3, 2024

A collection of resources to learn Reverse Engineering from start!

1,070 85 Updated Jul 8, 2024

A collection of inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners, cli/web tools and more.

142,353 9,392 Updated Aug 21, 2024

Tips For Bug Bounty Hunters

81 18 Updated Jul 16, 2022
Next