Skip to content
View h1pmnh's full-sized avatar
Block or Report

Block or report h1pmnh

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A tool to help you intercept encrypted APIs in iOS or Android apps

JavaScript 212 30 Updated Oct 22, 2023

Prompt Injection Primer for Engineers

330 31 Updated Aug 25, 2023

OAuth 2.0 exploitation, attack and research tools.

Python 10 1 Updated Jan 20, 2024

MySQL JDBC Deserialization Payload / MySQL客户端jdbc反序列化漏洞payload

C++ 11 15 Updated Feb 8, 2020

An IIS short filename enumeration tool

Go 673 64 Updated Jul 24, 2024

JavaScript-based web UI to decode ad-hoc Protobuf data

JavaScript 363 91 Updated Jun 19, 2024

A simple zero-config tool to make locally trusted development certificates with any names you'd like.

Go 47,756 2,470 Updated Jul 15, 2024

A library for detecting known secrets across many web frameworks

Python 464 39 Updated Jun 18, 2024

ActiveMQ RCE (CVE-2023-46604) 漏洞利用工具

Go 212 29 Updated Jan 29, 2024

A tool to fetch all in scope assets of HackerOne programs for integration in your automation and hacking workflow using HackerOne's hacker API

Go 3 2 Updated Aug 29, 2023

A tool to guess the rest of the shortnames provided by vulnerable IIS instances.

Python 32 7 Updated Aug 12, 2023

Detect and bypass web application firewalls and protection systems

Python 2,583 440 Updated Jul 18, 2024

A copy of Mura when it was still open-source in August 2020

8 17 Updated Aug 12, 2020

MOVEit CVE-2023-34362

Python 135 34 Updated Jun 26, 2023

Automating situational awareness for cloud penetration tests.

Go 1,870 178 Updated Aug 7, 2024

DNS rebinding toolkit

JavaScript 249 41 Updated May 22, 2023

XSS payloads designed to turn alert(1) into P1

JavaScript 1,292 212 Updated Sep 12, 2023

Unofficial documentation for the great tool Param Miner

165 25 Updated Aug 21, 2022

CVE-2022-21587 POC

Python 12 7 Updated Feb 17, 2023

A community-powered collection of all known bug bounty platforms, vulnerability disclosure platforms, and crowdsourced security platforms currently active on the Internet.

594 139 Updated Jun 21, 2024

Azure Security Resources and Notes

PowerShell 1,441 200 Updated Jun 12, 2024

All my infosec notes I have been building up over the years

326 83 Updated Jun 17, 2021

essential templates for kenzer [DEPRECATED]

Python 107 36 Updated Mar 7, 2023

Need any help bypassing CSP ?

JavaScript 24 3 Updated Nov 13, 2020

pwm

Java 888 251 Updated Dec 23, 2023

Create tar/zip archives that can exploit directory traversal vulnerabilities

Python 960 182 Updated Jun 3, 2021

An easy-to-setup version of XSS Hunter. Sets up in five minutes and requires no maintenance!

JavaScript 1,470 306 Updated Mar 7, 2024

SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 check list

Java 5,683 1,293 Updated Mar 10, 2021
Next