Skip to content
View optionsit's full-sized avatar

Block or report optionsit

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Academic purposes only. Attack against Salesforce lightning with guest privilege.

Python 141 32 Updated Feb 24, 2021

A browser extension that allows you to monitor, intercept, and debug JavaScript sinks based on customizable configurations.

JavaScript 477 44 Updated Nov 19, 2024

Domain Availability Checker

Shell 138 22 Updated Oct 25, 2024

A very simple AEM detector written in rust.πŸ¦€

Rust 20 7 Updated Jun 27, 2023

A Burp Suite extension that integrates OpenAI's GPT to perform an additional passive scan for discovering highly bespoke vulnerabilities and enables running traffic-based analysis of any type.

Java 1,992 233 Updated Jun 9, 2024

Reverse proxies cheatsheet

Python 1,782 207 Updated Nov 4, 2023

Contextual Content Discovery Tool

Go 2,657 297 Updated Apr 29, 2024

httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.

Go 7,762 844 Updated Nov 18, 2024

🌐 Wikipedia for Web APIs. Directory of REST API definitions in OpenAPI 2.0/3.x format

3,886 578 Updated Jul 28, 2024

A framework for bug hunting or pentesting targeting websites that have CVE-2021-41773 Vulnerability in public

Shell 62 18 Updated Oct 7, 2021

Match and Replace script used to automatically generate JSON option file to BurpSuite

Python 213 51 Updated May 13, 2019

This docker container catches outbound HTTP requests. It is useful for the functional testing of services such as API clients and webhook dispatchers.

Python 16 6 Updated May 25, 2020

"Can I take over XYZ?" β€” a list of services and how to claim (sub)domains with dangling DNS records.

Python 4,870 716 Updated Nov 16, 2024

Tool check: CVE-2021-41773, CVE-2021-42013, CVE-2020-17519

Python 60 15 Updated Aug 14, 2024

A tool for adding new lines to files, skipping duplicates

Go 1,388 154 Updated Jan 12, 2024

Open-source vulnerability disclosure and bug bounty program database

Python 985 319 Updated Nov 12, 2024

Protect and discover secrets using Gitleaks πŸ”‘

Go 17,990 1,474 Updated Nov 19, 2024

Github dorking tool

Python 136 26 Updated Mar 12, 2022

Wildcard certificates which were on vulnerable Citrix servers in 2020

4 Updated Jan 2, 2023

A list of shodan filters

546 114 Updated Nov 25, 2018

🐍 A toolkit for testing, tweaking and cracking JSON Web Tokens

Python 5,457 670 Updated Aug 1, 2024

Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application

Go 4,505 497 Updated Jan 23, 2024

Blackbox tool to disable SSL certificate validation - including certificate pinning - within iOS and macOS applications.

Objective-C 3,077 466 Updated Jul 9, 2023

"Can I take over DNS?" β€” a list of DNS providers and how to claim vulnerable domains.

989 93 Updated Sep 5, 2024

A curated list of the best charting and dataviz resources that developers may find useful, including the best JavaScript charting libraries

1,994 111 Updated Feb 18, 2024

Now, the Host is Mine! - Super Fast Sub-domain Takeover Detection!

Rust 355 64 Updated Jun 7, 2023

OWASP Application Gateway is an HTTP proxy that handles Oauth2 authentication and session management

Java 83 4 Updated Oct 28, 2024

Curated list of open-source & paid Attack Surface Monitoring (ASM) tools.

354 51 Updated Oct 9, 2024
Next