-
Updated
Aug 8, 2021
#
bug-bounty
Here are 199 public repositories matching this topic...
A collection of various awesome lists for hackers, pentesters and security researchers
android
security
awesome
reverse-engineering
pentesting-windows
hacking
penetration-testing
bug-bounty
fuzzing
A list of resources for those interested in getting started in bug bounties
-
Updated
Sep 15, 2021
Web path scanner
python
security
scanner
hacking
bruteforce
wordlist
penetration-testing
brute-force
bug-bounty
fuzzing
infosec
pentesting
fuzzer
brute
appsec
hacking-tool
dirsearch
dirbuster
scanner-web
bruteforcer
-
Updated
Oct 7, 2021 - Python
Subfinder is a subdomain discovery tool that discovers valid subdomains for websites. Designed as a passive framework to be useful for bug bounties and safe for penetration testing.
-
Updated
Oct 7, 2021 - Go
pdelteil
commented
Sep 8, 2021
There's a border case when the amount of items in the input file are lower than the number of instances in a given fleet.
For example, we want to run a scan using all nuclei templates on 20 urls having a fleet with 40 machines.
This situation will output the following error cat: input: No such file or directory because 20 instances are receiving empty input files.
Desired behavior
Collection of quality safety articles. Awesome articles.
github
java
dns
security
list
awesome
cloud
research
web
hacking
waf
xss
bug-bounty
src
pentest
hacker
acknowledgments
fuzz
sec
ruby-programs
redteam
bounty-hunters
quality-safety-articles
-
Updated
Apr 19, 2021
This challenge is Inon Shkedy's 31 days API Security Tips.
-
Updated
Aug 24, 2021
Subdomain Takeover tool written in Go
go
golang
security
subdomain
bug-bounty
infosec
pentesting
bugbounty
takeover
hostile
subdomain-takeover
-
Updated
Jul 10, 2021 - Go
Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the active and passive scanner by means of personalized rules through a very intuitive graphical interface.
-
Updated
Sep 2, 2021 - BlitzBasic
A tool to find subdomains and interesting things hidden inside, external Javascript files of page, folder, and Github.
security
secrets
s3-bucket
python3
bug-bounty
bugbounty
s3-buckets
security-automation
security-tools
cloud-storage-services
subdomain-scanner
subdomain-enumeration
find-subdomains
external-javascripts
secretfinder
find-secrets
madeinindia
-
Updated
Oct 8, 2021 - Python
A collection of awesome one-liner scripts especially for bug bounty tips.
-
Updated
Oct 9, 2021
Semi-automatic OSINT framework and package manager
rust
security
intelligence
security-audit
osint
lua
location
certificate-transparency
bug-bounty
pentesting
recon
security-scanner
investigation
reconnaissance
osint-framework
-
Updated
Oct 4, 2021 - Rust
Applied offensive security with Rust - Early access - https://academy.kerkour.com/black-hat-rust?coupon=GITHUB
rust
security
virus
scanner
phishing
wasm
hacking
audit
trojan
bug-bounty
infosec
pentesting
beacon
pentest
offensive-security
red-team
security-tools
c2
bug-hunting
shellcodes
-
Updated
Oct 9, 2021 - Rust
Sublert is a security and reconnaissance tool which leverages certificate transparency to automatically monitor new subdomains deployed by specific organizations and issued TLS/SSL certificate.
python
security
hacking
penetration-testing
certificate-transparency
bug-bounty
pentest
information-gathering
monitoring-tool
reconnaissance
certificate-transparency-logs
sublert
-
Updated
Feb 5, 2021 - Python
Open-source vulnerability disclosure and bug bounty program database.
legal
hackers
bug-bounty
safety
movement
simplicity
responsible-disclosure
safe-harbor-framework
security-research
vulnerability-disclosure
disclosure-policy
bug-bounty-hunters
-
Updated
Oct 7, 2021 - JavaScript
A cross-platform note-taking & target-tracking app for penetration testers.
-
Updated
Oct 5, 2021 - JavaScript
Reconnaissance tool for GitHub code search. Finds exposed API keys using pattern matching, commit history searching, and a unique result scoring system.
-
Updated
Aug 3, 2021 - Go
A Powerful Subdomain Takeover Tool
subdomain
bug-bounty
pentesting
bugbounty
subdomains
takeover
hostile
subdomain-takeover
takeover-subdomain
hostile-subdomain-takeover
-
Updated
Oct 8, 2020 - Go
Collection of small security tools, mostly in Bash and Python. CTFs, Bug Bounty and other stuff.
python
scanner
static-analysis
hacking
bug-bounty
infosec
pentesting
ctf
bugbounty
ctf-tools
webappsec
security-tools
itsecurity
bug-bounties
security-testing
-
Updated
Oct 10, 2021 - Python
Vajra is a highly customizable target and scope based automated web hacking framework to automate boring recon tasks and same scans for multiple target during web applications penetration testing.
osint
scanner
hacking
bug-bounty
pentesting
recon
information-gathering
web-hacking
pentest-tool
vajra
-
Updated
Sep 15, 2021 - JavaScript
-
Updated
Oct 7, 2021 - TypeScript
xml
hacking
cybersecurity
bug-bounty
infosec
bugbounty
information-security
payload
payloads
cyber-security
websecurity
web-application-security
xxe
xxe-injection
websecurity-reference
xxe-payloads
xxe-example
xml-entity
xxe-payload
xxe-payload-list
-
Updated
Jan 6, 2020
平常看到好的渗透hacking工具和多领域效率工具的集合
web
hacking
bug-bounty
awesome-list
bugbounty
hacker
hacking-tool
pentest-scripts
kali-scripts
bounty-hunters
hacking-tools
pentesting-tools
bugbounty-tool
-
Updated
Oct 4, 2021
A vulnerable Android application that shows simple examples of vulnerabilities in a ctf style.
android
kotlin
webview
kotlin-android
apk
bug-bounty
pentesting
android-studio
ctf
vulnerabilities
flutter
android-security
security-testing
flutter-security
flutter-xss
-
Updated
Jun 25, 2021 - Kotlin
ScanT3r - Module based Bug Bounty Automation Tool
linux
module-loader
python3
sqli
bug-bounty
web-security
script-loader
xss-scanner
regex-match
ssrf
web-scanner
hacking-tools
secrets-detection
bugbounty-tool
blindxss
headers-scanner
-
Updated
Sep 28, 2021 - Python
Offensive Docker is an image with the more used offensive tools to create an environment easily and quickly to launch assessment to the targets.
-
Updated
Apr 27, 2021 - Dockerfile
A bash script that will automatically install a list of bug hunting tools that I find interesting for recon, exploitation, etc. (minus burp) For Ubuntu/Debain.
hacking
penetration-testing
bug-bounty
recon
bugbounty
exploitation
hacking-tool
security-tools
bug-hunting
reconnaissance
hacking-tools
enumerate-subdomains
-
Updated
Jun 22, 2021 - Shell
Tools, data, and contact lists relevant to The disclose.io Project.
-
Updated
Jul 24, 2021
Improve this page
Add a description, image, and links to the bug-bounty topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the bug-bounty topic, visit your repo's landing page and select "manage topics."


Hey, here we need add url decoding cuz that invalid link with symbols of get request like ?, &, = etc
p.s thx for awesome tool