0xStrontium / CTFs
Writeups of CTFs i play - this repository will also include POCs, RFCs and Related Resources to support the writeups.
☆8Updated 3 years ago
Alternatives and similar repositories for CTFs:
Users that are interested in CTFs are comparing it to the libraries listed below
- ☆14Updated last year
- This repository has workflows created for https://github.com/RikunjSindhwad/Task-Ninja☆24Updated 8 months ago
- Simple recon tool automates your recon process☆17Updated 2 years ago
- ☆38Updated 4 years ago
- offy is a tool for bugbounty hunters to save money in their EC2 instances☆13Updated last year
- ☆13Updated 3 years ago
- 「💥」CVE-2022-33891 - Apache Spark Command Injection☆26Updated 2 years ago
- WebApp intentionally made vulnerable to Race Condition for practicing Race Condition☆25Updated 3 years ago
- GitHub Entreprise Server SAML authentication bypass (CVE-2025-23369) exploit☆35Updated 3 months ago
- ☆15Updated last year
- Wounty is a simple web enumeration script that makes use of other popular tools to automate the early stages of recognition in Bug Bounty…☆14Updated 3 years ago
- ☆13Updated 3 years ago
- HTTP requests of FrontPage expolit☆25Updated 11 years ago
- Find CVEs that don't have a Detectify modules.☆22Updated 2 years ago
- Continuous Reconnaissance and Vulnerability Scanning for Bug Bounties☆18Updated 11 months ago
- List of custom Nuclei templates☆15Updated last year
- Nuclei templates for drupal vulns... far from perfect☆16Updated 4 months ago
- Burp extension used to snip any header from all the requests.☆22Updated last year
- BBSSRF - Bug Bounty SSRF is a powerful tool to check SSRF OOB connection☆38Updated 2 years ago
- ☆21Updated 2 years ago
- Damn Vulnerable PHP Application (DVPA) - It is Lab Written in The PHP lang, Which Contains PHP Type Juggling - RCE Challenges☆32Updated 2 years ago
- Autorev.sh generates reverse shell codes for reverse shell . Supports linux and windows☆16Updated 3 years ago
- Automated HTTP Request Repeating With Burp Suite☆37Updated 2 years ago
- ☆20Updated 3 years ago
- Credax - Fuzzing Tool with Slack Notifications. Also removes false positive responses.☆10Updated 3 years ago
- Check if domain has bug bounty program or not☆27Updated last year
- Scripts/tools to destroy things☆17Updated 3 years ago
- Intentionally Vulnerable Nodejs Application & APIs☆22Updated 3 years ago
- ☆48Updated 4 years ago
- A powerful and clean bash script to dump and extract information from Project Discovery's Chaos Project https://chaos.projectdiscovery.io…☆25Updated 3 years ago