Skip to content
View thenextme's full-sized avatar

Highlights

  • Pro

Block or report thenextme

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network

Python 2,310 484 Updated Mar 26, 2024

Fast subdomains enumeration tool for penetration testers

Python 10,197 2,141 Updated Aug 2, 2024

A collection of awesome software, libraries, documents, books, resources and cools stuffs about security.

12,872 1,959 Updated Jul 27, 2024

NAXSI is an open-source, high performance, low rules maintenance WAF for NGINX

C 4,812 606 Updated Nov 8, 2023

πŸ›‘οΈ Open-source and next-generation Web Application Firewall (WAF)

Python 7,684 431 Updated Mar 17, 2025

This is a webshell open source project

PHP 10,276 5,585 Updated Dec 24, 2024

Web Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning. It is developed by Hackmanit GmbH (http://hackmanit.de/).

Go 943 130 Updated Dec 26, 2024

Bug Bounty Tricks and useful payloads and bypasses for Web Application Security.

521 97 Updated Mar 5, 2025

πŸ“œ Yet another collection of wordlists

1,500 277 Updated Mar 10, 2025

Directory/File, DNS and VHost busting tool written in Go

Go 11,137 1,297 Updated Mar 13, 2025

Weaponized web shell

Python 3,267 610 Updated Oct 18, 2024

Here Are Some Popular Hacking PDF

358 106 Updated Mar 6, 2025

A list of resources for those interested in getting started in bug bounties

11,099 1,961 Updated Jul 23, 2024

An easy-to-setup version of XSS Hunter. Sets up in five minutes and requires no maintenance!

JavaScript 1,782 351 Updated Mar 7, 2024

WPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websites. Contact us via contact@wpscan.com

Ruby 8,872 1,280 Updated Mar 17, 2025

πŸ”₯ Web-application firewalls (WAFs) from security standpoint.

Python 6,551 1,084 Updated Oct 28, 2024

A next-generation crawling and spidering framework.

Go 13,184 692 Updated Mar 17, 2025

All about bug bounty (bypasses, payloads, and etc)

6,147 1,206 Updated Sep 8, 2023

πŸŒ™πŸ¦Š Dalfox is a powerful open-source XSS scanner and utility focused on automation.

Go 4,015 448 Updated Mar 17, 2025

Most advanced XSS scanner.

Python 13,708 1,949 Updated Mar 17, 2025

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…

PHP 61,447 24,209 Updated Mar 17, 2025

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Python 63,949 15,139 Updated Mar 17, 2025

Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature

3,831 998 Updated Jul 31, 2024

Checklist of the most important security countermeasures when designing, testing, and releasing your API

22,714 2,630 Updated Nov 22, 2024

A collection of inspiring lists, manuals, cheatsheets, blogs, hacks, one-liners, cli/web tools and more.

160,870 10,126 Updated Nov 19, 2024

😱 A curated list of amazingly awesome OSINT

20,529 2,978 Updated Mar 9, 2025

WebGoat is a deliberately insecure application

JavaScript 7,347 6,142 Updated Mar 17, 2025

Damn Small Vulnerable Web

Python 802 324 Updated Jun 14, 2024

A collection of various awesome lists for hackers, pentesters and security researchers

90,171 9,172 Updated Jan 18, 2025

DOMPurify - a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify works with a secure default, but offers a lot of configurability and hooks. Demo:

JavaScript 14,782 765 Updated Mar 16, 2025
Next