Starred repositories
GG Dorking is a tool to generate GitHub and Google dorking for pentesters and bug bounty hunters.
API Fuzzer which allows to fuzz request attributes using common pentesting techniques and lists vulnerabilities
Script to generate markdown of API endpoints which then can be used to produce visual mindmap. Supports txt as well as Burp xml as input.
This is go CLI tool for send fast Multiple get HTTP request.
Automated Security Testing For REST API's
Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load 🛰️ 🦀
Browser extension for viewing archived and cached versions of web pages, available for Chrome, Edge and Safari
Every Security Engineer Interview Question From Glassdoor.com
A Bind9 server for pentesters to use for Out-of-Band vulnerabilities
📙 Markdown Templates for Offensive Security OSCP, OSWE, OSCE, OSEE, OSWP exam report
A quick methodology on testing / hacking SAP Applications for n00bz and bug bounty hunters
Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist
Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.
Multi platform toolkit for an interactive DNS shell commands exfiltration, by using DNS-Cat you will be able to execute system commands in shell mode over DNS protocol
This shell script generates more payloads to nuclei templates from your word list