Personal Web Application Pentesting Methodology built during my cybersecurity learning journey. Covers reconnaissance, scanning, fuzzing, and testing for common vulnerabilities such as SQLi, IDOR, and authentication issues, with a focus on structured workflow and practical understanding.
☆58Jul 24, 2026Updated last month
Alternatives and similar repositories for Web-Pentesting-Methodology
Users that are interested in Web-Pentesting-Methodology are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆14Jun 19, 2024Updated 2 years ago
- ☆31Feb 16, 2026Updated 7 months ago
- PenTest and BugBounty 🕵️☆17Sep 15, 2026Updated last week
- ☆16Apr 12, 2026Updated 5 months ago
- This repo contains Machines and Notes for practicing for EJPTv1/2 exam☆17Aug 24, 2023Updated 3 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- ☆78May 5, 2025Updated last year
- A collection of Bug Bounty Tips collected from GitHub to all bug bounty hunters☆33Dec 12, 2023Updated 2 years ago
- Cryptography for Pentesters Course [Arabic]☆29Feb 3, 2026Updated 7 months ago
- ☆28Feb 10, 2026Updated 7 months ago
- Advanced CVE Finder with potential public exploit! Searching via Shodan query, organization name or even hostname☆32Dec 22, 2025Updated 9 months ago
- An obsessive, expert-tier knowledge base + AI skill system for professional bug bounty hunting, security research, and penetration testin…☆52Apr 25, 2026Updated 4 months ago
- Helping you find out what you probably shouldn’t have access to.☆18Jul 20, 2026Updated 2 months ago
- powerfull pentesting tool to checking email by smtp command☆10Feb 29, 2024Updated 2 years ago
- ☆97May 11, 2026Updated 4 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Tool designed for fast crawl and extract endpoints☆16Apr 5, 2021Updated 5 years ago
- This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter☆35Feb 10, 2024Updated 2 years ago
- Auto Web Vulnerability Scanning Framework☆11Feb 3, 2016Updated 10 years ago
- Offsec Practice Labs is a curated training arsenal for hands-on prep across eCPPTv3, OSCP, and CPTS.☆256Aug 3, 2026Updated last month
- PoC for CVE-2026-48907 - Joomla! JCE extension < 2.9.99.5 unauthenticated RCE☆16Jun 11, 2026Updated 3 months ago
- Gampung tools for find nuclei template from github☆12Sep 6, 2023Updated 3 years ago
- Collection of Cyber Threat Intelligence sources from the deep and dark web☆18Sep 10, 2025Updated last year
- CVE-2025-68428 Proof of Concept☆24Jan 8, 2026Updated 8 months ago
- My ATO Via Password Reset Methodology☆53May 13, 2026Updated 4 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- CVE-2026-63030, CVE-2026-60137, wp2shell scanner☆65Jul 18, 2026Updated 2 months ago
- Stealth hybrid URL mapper☆31May 1, 2026Updated 4 months ago
- ☆51Apr 30, 2026Updated 4 months ago
- ☆20Jun 21, 2024Updated 2 years ago
- A Python tool to resolve domains to IPs, fetch related CVEs, and display open ports☆17Nov 21, 2025Updated 10 months ago
- ☆57Jul 15, 2026Updated 2 months ago
- Detection for CVE-2025-52691☆19Dec 30, 2025Updated 8 months ago
- Like DLP☆11Jan 27, 2025Updated last year
- ☆18Updated this week
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- My Private Bug Hunting Methodology☆450Updated this week
- Proof-of-Concept exploit for CVE-2026-23918 (Apache mod_http2 double-free). Features multi-mode DoS (Rapid-RST, Slow-Drip) and passive RC…☆23May 6, 2026Updated 4 months ago
- Agentic offensive-security in your terminal☆1,368Aug 31, 2026Updated 3 weeks ago
- List of all Red Teaming tools and Techniques for each stages☆23Dec 28, 2022Updated 3 years ago
- 🔐 Offensive security knowledge base — 50+ docs covering web exploitation, bug bounty, privilege escalation, CTF writeups, APT emulation,…☆244Apr 22, 2026Updated 5 months ago
- A curated collection of my security research and bug bounty writeups, documenting real-world vulnerabilities, exploitation methods☆27Jul 15, 2026Updated 2 months ago
- A simple HAR-based JavaScript recon automation kit for organizing JS files, endpoints, secrets, and gf-filtered attack surface during bug…☆18May 20, 2026Updated 4 months ago