-
SecLists Public
Forked from danielmiessler/SecListsSecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…
PHP MIT License UpdatedJun 22, 2025 -
-
-
-
Vajra Public
Forked from TROUBLE-1/VajraVajra is a UI-based tool with multiple techniques for attacking and enumerating in the target's Azure environment. It features an intuitive web-based user interface built with the Python Flask modu…
CSS GNU Affero General Public License v3.0 UpdatedJun 19, 2025 -
easyxss Public
A simple threading-based tool to find reflection in parameters of multiple URLs for cross-site scripting identification.
-
Insecure-Firebase-Exploit Public
Forked from MuhammadKhizerJaved/Insecure-Firebase-ExploitA simple Python Exploit to Write Data to Insecure/vulnerable firebase databases! Commonly found inside Mobile Apps. If the owner of the app have set the security rules as true for both "read" & "wr…
Python UpdatedJun 15, 2025 -
Pyrebase Public
Forked from thisbejim/PyrebaseA simple python wrapper for the Firebase API.
Python UpdatedJun 11, 2025 -
-
nuclei-templates Public
Forked from projectdiscovery/nuclei-templatesCommunity curated list of templates for the nuclei engine to find security vulnerabilities.
JavaScript MIT License UpdatedDec 29, 2024 -
express Public
Forked from expressjs/expressFast, unopinionated, minimalist web framework for node.
JavaScript MIT License UpdatedDec 18, 2024 -
vulnerability-research Public
This repository contains information on the CVEs I found.
-
schemasafe Public
Forked from ExodusMovement/schemasafeA reasonably safe JSON Schema validator with draft-04/06/07/2019-09/2020-12 support.
JavaScript MIT License UpdatedNov 30, 2024 -
fuzzdiff Public
Forked from canalun/fuzzdifffuzzer to detect side effects of third party script
TypeScript Apache License 2.0 UpdatedOct 2, 2024 -
truffleHog Public
Forked from trufflesecurity/trufflehogSearches through git repositories for high entropy strings and secrets, digging deep into commit history
Python GNU General Public License v2.0 UpdatedSep 7, 2024 -
openvpn-install Public
Forked from hwdsl2/openvpn-installOpenVPN server installer for Ubuntu, Debian, AlmaLinux, Rocky Linux, CentOS, Fedora, openSUSE, Amazon Linux 2 and Raspberry Pi OS
Shell MIT License UpdatedAug 7, 2024 -
XSStrike Public
Forked from s0md3v/XSStrikeMost advanced XSS scanner.
Python GNU General Public License v3.0 UpdatedJun 18, 2024 -
-
-
-
-
keyhacks Public
Forked from streaak/keyhacksKeyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.
UpdatedFeb 2, 2023 -
-
Identify NPM dependencies vulnerable to account hijacking
-
subdomainsEnumerator Public
Forked from Anon-Exploiter/subdomainsEnumeratorA docker image which will enumerate, sort and unique the results of various subdomains enumeration tools.
-
-
-
awesome-ruby-security Public
Forked from pxlpnk/awesome-ruby-securityAwesome Ruby Security resources
UpdatedNov 13, 2021 -
RailsRoutes Public
Ruby on Rails Routes for Parsing and Penetration Testing
Python UpdatedNov 13, 2021 -
dora Public
Forked from sdushantha/doraFind exposed API keys based on RegEx and get exploitation methods for some of keys that are found
Python MIT License UpdatedNov 12, 2021