Domains belonging to the most reputed public bug bounty programs. [NOT FOR NON-MONETARY OR PRIVATE PROGRAMS]
☆225Aug 29, 2024Updated last year
Alternatives and similar repositories for bug-bounty-domains
Users that are interested in bug-bounty-domains are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆97May 15, 2020Updated 6 years ago
- Asset inventory of over 800 public bug bounty programs.☆1,585Feb 14, 2025Updated last year
- A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.☆184Nov 22, 2021Updated 4 years ago
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆49Apr 25, 2022Updated 4 years ago
- Simple tools to handle string and generate subdomain permutations☆15Jun 8, 2022Updated 4 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Jeeves SQLI Finder☆215May 13, 2022Updated 4 years ago
- Nuclei Templates to reproduce Cracking the lens's Research☆132Jan 8, 2022Updated 4 years ago
- List of bug bounty programs of companies/organisations in Switzerland☆14Oct 28, 2021Updated 4 years ago
- Burp extension to create target specific and tailored wordlist from burp history.☆259Dec 8, 2021Updated 4 years ago
- A tool to download program information from Bugcrowd, for use by researchers to compare programs they are eligible to participate in☆21Dec 22, 2022Updated 3 years ago
- Some Tutorials and Things to Help Bug Hunter☆31Mar 17, 2021Updated 5 years ago
- ☆178Nov 20, 2025Updated 7 months ago
- Hidden parameters discovery suite☆224Nov 14, 2022Updated 3 years ago
- Erebus is a fast tool for parameter-based vulnerability scanning using a Yaml based template engine like nuclei.☆134Jul 11, 2021Updated 4 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- ☆438Jun 1, 2021Updated 5 years ago
- A python tool used to discover endpoints, potential parameters, a target specific wordlist for a given target and secrets☆1,569Mar 8, 2026Updated 3 months ago
- Nuclei plugin for BurpSuite☆1,330Oct 22, 2025Updated 8 months ago
- Generate tens of thousands of subdomain combinations in a matter of seconds☆277Sep 25, 2023Updated 2 years ago
- Detailed information about API key / OAuth token (Description, Request, Response, Regex, Example)☆296Sep 26, 2023Updated 2 years ago
- A replacement of "qsreplace", accepts URLs as standard input, replaces all query string values with user-supplied values and stdout.☆109Mar 1, 2022Updated 4 years ago
- Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one pl…☆1,045Jun 6, 2026Updated 3 weeks ago
- ☆301Jul 16, 2022Updated 3 years ago
- Bash script to extract data from the Waybackmachine☆11Mar 15, 2021Updated 5 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- XSS reflector vulnerabilities exploitation extended.☆28Jul 25, 2021Updated 4 years ago
- ☆383May 17, 2023Updated 3 years ago
- A collection of awesome one-liner scripts especially for bug bounty tips.☆3,158Jul 29, 2024Updated last year
- Gotator is a tool to generate DNS wordlists through permutations.☆525Jul 17, 2022Updated 3 years ago
- A fuzzer made in golang for finding issues like xss, lfi, rce, ssti...that detects issues using change in content length and verify it us…☆62Oct 25, 2020Updated 5 years ago
- "Can I take over DNS?" — a list of DNS providers and how to claim vulnerable domains.☆1,098Mar 3, 2025Updated last year
- Scope aggregation tool for HackerOne, Bugcrowd, Intigriti, YesWeHack, and Immunefi!☆1,405Updated this week
- DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it☆453Jan 9, 2024Updated 2 years ago
- ☆65Jan 14, 2023Updated 3 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- SSRF plugin for burp Automates SSRF Detection in all of the Request☆629Jan 20, 2021Updated 5 years ago
- Dome - Subdomain Enumeration Tool. Fast and reliable python script that makes active and/or passive scan to obtain subdomains and search …☆540Feb 7, 2024Updated 2 years ago
- Looks for parameters in urls☆35Oct 14, 2024Updated last year
- Useful "Match and Replace" burpsuite rules☆373Sep 26, 2023Updated 2 years ago
- Automated Recon Tool Installer☆16Jun 29, 2022Updated 3 years ago
- IIS shortname scanner written in Go☆356Mar 25, 2023Updated 3 years ago
- Most of the Google Acquisitions for Bug Bounty Hunter.☆66Sep 3, 2022Updated 3 years ago