How To approach recon on real targets — from passive enumeration to origin IP discovery. Covers tools, automation, and the logic behind each phase.
☆358Jul 5, 2026Updated 3 weeks ago
Alternatives and similar repositories for Full-Bug-Bounty-Hunting-Methodology-2026
Users that are interested in Full-Bug-Bounty-Hunting-Methodology-2026 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- An evolving recon & pentest skill pack. CORS, XSS, SQLi, SSRF, RCE, WordPress, MCP, cloud, subdomain takeover, and more. Field-tested. MI…☆1,044Updated this week
- BugBounty-Recon-Methodology☆326May 26, 2026Updated 2 months ago
- ☆78May 5, 2025Updated last year
- AI-powered bug bounty hunting from your terminal - recon, 20 vuln classes, autonomous hunting, and report generation. All inside Claude…☆4,119Updated this week
- A complete bug bounty workspace for HackerOne researchers. Includes scope enforcement, automated recon/vuln pipeline (400+ tools), report…☆214Jul 20, 2026Updated 2 weeks ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- My Main App Hacking CheckList☆33Jun 20, 2026Updated last month
- AI-Powered Agents for Bub-Bounty Pentesting and Red-Teaming purposes☆361Apr 30, 2026Updated 3 months ago
- Here's an updated Google Dorking list for 2025 Bug Bounty Hunting, incorporating new patterns and, the latest trends.☆15Apr 26, 2025Updated last year
- Agentic offensive-security in your terminal☆1,172Jun 14, 2026Updated last month
- ☆109Mar 30, 2026Updated 4 months ago
- A resources for who want to learn and get deep into client-side bugs☆554Dec 8, 2024Updated last year
- Many script that can be modified according to your needs for Information Gathering and Asset discovery in Bug Bounty Hunting (Pull reques…☆61Feb 26, 2024Updated 2 years ago
- Apkx-Hunter is an Android Static Analysis Framework in Debian Package written entirely in C with OWASP MASVS scanning with 15 categories …☆84Updated this week
- Solutions for all the WebSecurityAcademy with Videos☆124Updated this week
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A Claude Code skill bundle for bug hunting and external red-team work - 82 skills, 15 slash commands, 681 disclosed-report patterns curat…☆3,280Updated this week
- ☆96May 11, 2026Updated 2 months ago
- Grafana scanner with all public CVEs that I collected in one script to make grafana testing easier☆241Jul 7, 2026Updated 3 weeks ago
- A OWASP Based Checklist With 80+ Test Cases☆202Oct 26, 2022Updated 3 years ago
- A shellcode loader generator with support for multiple injection techniques, built for red team engagements.☆99Jul 1, 2026Updated last month
- List of AI Hacking Agents☆624Updated this week
- All-round bug bounty skill for Claude Code parallelized agents for smart contract audits (EVM, Move, Solana, TRON), web/API security, an…☆237Jul 27, 2026Updated last week
- An intentionally vulnerable OWASP LLM Top 10 training platform for AI Security, Prompt Injection, RAG Security, Agent Security, and GenAI…☆262Updated this week
- Turn Claude Code into your offensive security research assistant. Specialized AI subagents for authorized penetration testing plan engage…☆2,067Jun 22, 2026Updated last month
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Bug bounty focused JavaScript security analysis for crawling web assets, source maps, and secret discovery☆58Updated this week
- Karpathy LLM based claude harness for PenetrationTesting / Bugbounty using obsidian☆263Updated this week
- BountyLens MCP server — connect Claude Code to your Hunter Tracker☆64Jun 22, 2026Updated last month
- Collection of documentation, tools, and tips related to vulnerability research.☆103Updated this week
- ☆262Dec 10, 2025Updated 7 months ago
- A personal RAG system for offensive security knowledge☆166Jul 13, 2026Updated 3 weeks ago
- AutoAR is an automated security reconnaissance tool, ASM and Discord bot for bug bounty hunters and penetration testers. It automates gat…☆239Updated this week
- Burp Suite extension for cross-identity & cross-tenant access-control testing — BAC, IDOR, BOLA, and privilege escalation.☆58Jul 12, 2026Updated 3 weeks ago
- autonomous red teaming platform; multi-agent offensive-security meta-harness☆5,377Updated this week
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- My ATO Via Password Reset Methodology☆53May 13, 2026Updated 2 months ago
- A blazingly fast, multi-threaded TUI malware analysis tool built in Rust. Features deep PE parsing, YARA scanning, and heuristic risk sco…☆189Jul 12, 2026Updated 3 weeks ago
- Complete Solution for VAPT/AppSec and Pentesting Guide: Web | Mobile | API | Thick Client | Source Code Review | DevSecOps | Wireless | …☆2,008Jul 24, 2026Updated last week
- My Private Bug Hunting Methodology☆443Nov 27, 2024Updated last year
- claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md f…☆2,806May 8, 2026Updated 2 months ago
- 0xJS is an AI-powered JavaScript Security Tool☆66Apr 16, 2026Updated 3 months ago
- A curated collection of my security research and bug bounty writeups, documenting real-world vulnerabilities, exploitation methods☆26Jul 15, 2026Updated 2 weeks ago