A list of web application security
This repository is a collection of Awesome XSS resources. Contributions are welcome and should be submitted via an issue.
The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf…
Quelques conseils autour des obligations légales, fiscales et juridique pour la pratique du Bug Bounty en France
🔥 Professional Penetration Testing Framework v4.0 - Automated subdomain enumeration, vulnerability scanning with Nuclei, port scanning, and …
Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.
Browser Exploitation Framework. Hooks web browsers via JavaScript and provides extensive command modules for session hijacking, social engin…
A list of useful payloads for Web Application Security and Pentest/CTF
Beyond XSS: Explore the Web Front-end Security Universe. A series about front-end security
The Black Hat GraphQL Book Repository
Applied offensive security with Rust - https://kerkour.com/black-hat-rust
A Python based web application scanner to gather OSINT and fuzz for OWASP vulnerabilities on a target website.
A community-driven OWASP Foundation project building open-source tools for vulnerability reporting, bug tracking, security automation & cont…
bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS
Python Script for Telegram Bot is specially built for pentest & bug bounty. It's like a telegram shell.
Offensive security drives defensive security. We're sharing a collection of SaaS attack techniques to help defenders understand the threats …
Cheatsheet, Notes, Payloads and Mayhem for Burp Suite Practitioner Exam (BSCP)
Bug Bounty Tools used on Twitch - Recon
Bug Bounty ~ Awesomes | Books | Cheatsheets | Checklists | Tools | Wordlists | More
This repository is a curated resource for aspiring bug hunters, offering hands-on labs, tools, and structured guidance to support your learn…
This repo contains different variants of Bug Bounty & Security & Pentest & Tech related Articles
🛡️ Open-source and cloud-native Web Application Firewall (WAF)
Leading platform for web application security testing. The Community Edition includes an intercepting proxy, repeater, intruder, and decoder…
Marketplace of extensions for Burp Suite covering active/passive scanning, custom insertion points, logging, authentication testing, and int…