Stars
synack / wstg
Forked from OWASP/wstgThe Web Security Testing Guide is a comprehensive open source guide to testing the security of web applications and web services.
Gather and update all available and newest CVEs with their PoC.
Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.
The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf, masscan, nuclei, meg and many more!
A natural evolution of Burp Suite's Repeater tool
Parse HPROF files from the Spring Boot Heapdump Actuator
A collection of awesome API Security tools and resources. The focus goes to open-source tools and resources that benefit all the community.
Scope aggregation tool for HackerOne, Bugcrowd, Intigriti, YesWeHack, and Immunefi!
A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..etc. It could be used as a part of web content discovery, to …
⚔️ Web Hacker's Weapons / A collection of cool tools used by Web hackers. Happy hacking , Happy bug-hunting
3klector is an automation Recon tool which collecting information about Acquisitions and ASN which related to Big Scope company
Automation Recon tool which works with Large & Medium scopes. It performs a lot of tasks and gets back all the results in separated files.
Fast tool to extract all subdomains from crt.sh website. Output will be up to sub.sub.sub.subdomain.com with standard and advanced search techniques
Fast HTTP package for Go. Tuned for high performance. Zero memory allocations in hot paths. Up to 10x faster than net/http
The new bridge between Burp Suite and Frida!
Methodology for high-quality web application security testing - https://github.com/tprynn/web-methodology/wiki
Prototype Pollution and useful Script Gadgets
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the …
Making Favicon.ico based Recon Great again !