OWASP WEB Directory Scanner [](https://twitter.com/intent/tweet?text=Wow:&url=https://github.com/stanislav-web/OpenDoor) ===================…
A list of all FTP servers in IPv4 that allow anonymous logins.
Mapping from bug bounty and vulnerability disclosure programs to respective GitHub organizations
OWASP's Zed Attack Proxy — one of the world's most popular free web application security scanners. Features active/passive scanning, spideri…
The OWASP Java Encoder is a Java 1.5+ simple-to-use drop-in high-performance encoder class with no dependencies and little baggage. This pro…
OWASP based Web Application Security Testing Checklist
Offensive Web Testing Framework (OWTF), is a framework which tries to unite great tools and make pen testing more efficient http://owtf.org …
Passive web vulnerability scanner for ethical diagnostics
Hacking systems with the automation of PasteJacking attacks.
A path-normalization pentesting tool.
渗透测试Payload速查平台 | Pentest Payload Quick Reference | XSS/SQLi/SSRF/RCE | React+TypeScript
…
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
渗透测试有关的POC、EXP、脚本、提权、小工具等---About penetration-testing python-script poc getshell csrf xss cms php-getshell domainmod-xss csrf-webshell cobub…
This is more of a checklist for myself. May contain useful tips and tricks.
Complete Roadmap for Penetration Testing
Fully autonomous AI Agents system capable of performing complex penetration testing tasks
Pentesting and Bug Bounty Notes, Cheetsheets and Guide for Ethical Hacker, Whitehat Pentesters and CTF Players.
Local penetration testing lab using docker-compose.
The most autonomous pentesting AI on the market. MCP server + Python agents with 150+ security tools, exploit chaining, and PoC validation.
Turn Claude Code into your offensive security research assistant. Specialized AI subagents for authorized penetration testing plan engagemen…
Autonomous penetration testing using a swarm of AI agents. Orchestrates recon, classification, exploitation, and reporting specialists with …
OWASP PTK - application security browser extension.
Fast web crawler designed for OSINT. Extracts URLs, emails, social media accounts, Amazon S3 buckets, Bitcoin wallets, and files from a targ…