-
Updated
May 10, 2021
#
bug-bounty
Here are 160 public repositories matching this topic...
A collection of various awesome lists for hackers, pentesters and security researchers
android
security
awesome
reverse-engineering
pentesting-windows
hacking
penetration-testing
bug-bounty
fuzzing
A list of resources for those interested in getting started in bug bounties
-
Updated
Apr 1, 2021
Web path scanner
python
security
scanner
hacking
bruteforce
wordlist
penetration-testing
brute-force
bug-bounty
fuzzing
infosec
pentesting
fuzzer
brute
appsec
hacking-tool
dirsearch
dirbuster
scanner-web
bruteforcer
-
Updated
May 19, 2021 - Python
Subfinder is a subdomain discovery tool that discovers valid subdomains for websites. Designed as a passive framework to be useful for bug bounties and safe for penetration testing.
-
Updated
May 17, 2021 - Go
Collection of quality safety articles. Awesome articles.
github
java
dns
security
list
awesome
cloud
research
web
hacking
waf
xss
bug-bounty
src
pentest
hacker
acknowledgments
fuzz
sec
ruby-programs
redteam
bounty-hunters
quality-safety-articles
-
Updated
Apr 19, 2021
This challenge is Inon Shkedy's 31 days API Security Tips.
-
Updated
Apr 12, 2020
Subdomain Takeover tool written in Go
go
golang
security
subdomain
bug-bounty
infosec
pentesting
bugbounty
takeover
hostile
subdomain-takeover
-
Updated
Mar 24, 2021 - Go
Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the active and passive scanner by means of personalized rules through a very intuitive graphical interface.
-
Updated
Nov 26, 2020 - BitBake
A tool to find subdomains and interesting things hidden inside, external Javascript files of page, folder, and Github.
security
secrets
s3-bucket
python3
bug-bounty
bugbounty
s3-buckets
security-automation
security-tools
cloud-storage-services
subdomain-scanner
subdomain-enumeration
find-subdomains
external-javascripts
secretfinder
find-secrets
-
Updated
Mar 18, 2021 - Python
Semi-automatic OSINT framework and package manager
rust
security
intelligence
security-audit
osint
lua
location
certificate-transparency
bug-bounty
pentesting
recon
security-scanner
investigation
reconnaissance
osint-framework
-
Updated
May 17, 2021 - Rust
A collection of awesome one-liner scripts especially for bug bounty tips.
-
Updated
Apr 19, 2021
Sublert is a security and reconnaissance tool which leverages certificate transparency to automatically monitor new subdomains deployed by specific organizations and issued TLS/SSL certificate.
python
security
hacking
penetration-testing
certificate-transparency
bug-bounty
pentest
information-gathering
monitoring-tool
reconnaissance
certificate-transparency-logs
sublert
-
Updated
Feb 5, 2021 - Python
yesnet0
commented
Jan 18, 2021
As someone who has an addition or change to make to diodb but is not conversant with git or Github (e.g. legal team, marketing team, executive, etc) I would like to be able to use a web-based form to submit a change.
As a maintainer, I'd like submissions from the form above to be checked against the existing database to determine whether they are a new entry or an update. Given the user isn't a
A cross-platform note-taking & target-tracking app for penetration testers.
-
Updated
May 10, 2021 - JavaScript
Reconnaissance tool for GitHub code search. Finds exposed API keys using pattern matching, commit history searching, and a unique result scoring system.
-
Updated
Feb 8, 2021 - Go
A Powerful Subdomain Takeover Tool
subdomain
bug-bounty
pentesting
bugbounty
subdomains
takeover
hostile
subdomain-takeover
takeover-subdomain
hostile-subdomain-takeover
-
Updated
Oct 8, 2020 - Go
Collection of small security tools, mostly in Bash and Python. CTFs, Bug Bounty and other stuff.
python
scanner
static-analysis
hacking
bug-bounty
infosec
pentesting
ctf
bugbounty
ctf-tools
webappsec
security-tools
itsecurity
bug-bounties
security-testing
-
Updated
Apr 30, 2021 - Python
Vajra is a highly customizable target and scope based automated web hacking framework to automate boring recon tasks and same scans for multiple target during web applications penetration testing.
osint
scanner
hacking
bug-bounty
pentesting
recon
information-gathering
web-hacking
pentest-tool
vajra
-
Updated
Apr 8, 2021 - JavaScript
Applied offensive security with Rust - Early access - https://academy.kerkour.com/black-hat-rust?coupon=GITHUB
rust
security
scanner
phishing
wasm
audit
bug-bounty
pentesting
beacon
cc
pentest
offensive
offensive-security
red-team
bug-hunter
c2
bug-hunting
implant
red-teaming
shellcodes
-
Updated
May 18, 2021 - Rust
平常看到好的渗透hacking工具和多领域效率工具的集合
web
hacking
bug-bounty
awesome-list
bugbounty
hacker
hacking-tool
pentest-scripts
kali-scripts
bounty-hunters
hacking-tools
pentesting-tools
bugbounty-tool
-
Updated
May 17, 2021
Offensive Docker is an image with the more used offensive tools to create an environment easily and quickly to launch assessment to the targets.
-
Updated
Apr 27, 2021 - Dockerfile
A vulnerable Android application that shows simple examples of vulnerabilities in a ctf style.
android
kotlin
webview
kotlin-android
apk
bug-bounty
pentesting
android-studio
ctf
vulnerabilities
flutter
android-security
security-testing
flutter-security
flutter-xss
-
Updated
Oct 18, 2020 - Kotlin
xml
hacking
cybersecurity
bug-bounty
infosec
bugbounty
information-security
payload
payloads
cyber-security
websecurity
web-application-security
xxe
xxe-injection
websecurity-reference
xxe-payloads
xxe-example
xml-entity
xxe-payload
xxe-payload-list
-
Updated
Jan 6, 2020
ScanT3r - Bug Bounty Automation Tool
linux
module-loader
python3
sqli
bug-bounty
web-security
script-loader
xss-scanner
regex-match
ssrf
web-scanner
hacking-tools
secrets-detection
bugbounty-tool
blindxss
headers-scanner
-
Updated
Apr 25, 2021 - Python
SRCMS企业应急响应与缺陷管理系统
-
Updated
Oct 11, 2019 - JavaScript
Tools, data, and contact lists relevant to The disclose.io Project.
-
Updated
May 16, 2021
DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it
-
Updated
Mar 29, 2021 - Go
security
bug-bounty
application-security
bugbounty
appsec
payload
payloads
lfi
rfi
web-hacking
websecurity
web-application-security
security-research
security-researcher
lfi-exploitation
payload-list
lfi-vulnerability
security-researchers
rfi-exploiton
rfi-vulnerabillity
-
Updated
Oct 1, 2020
Improve this page
Add a description, image, and links to the bug-bounty topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the bug-bounty topic, visit your repo's landing page and select "manage topics."


This is a question . If there is a way to to tweak and add fleets from multiple clouds so as to run axiom-scan. Like adding hosts and ssh keys from all clouds in one file from which the axiom-scan can run on them?