A complete bug bounty workspace for HackerOne researchers. Includes scope enforcement, automated recon/vuln pipeline (400+ tools), report templates, CVE/CWE watchlists, and a local VM practice lab. Built for disciplined, ethical hunting.
☆450Aug 24, 2026Updated last month
Alternatives and similar repositories for bugbounty-lab101
Users that are interested in bugbounty-lab101 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆1,537Aug 11, 2026Updated last month
- How To approach recon on real targets — from passive enumeration to origin IP discovery. Covers tools, automation, and the logic behind e…☆420Jul 5, 2026Updated 2 months ago
- Autonomous red teaming and evidence-backed security evaluation for live AI agents.☆28Jul 22, 2026Updated 2 months ago
- An intentionally vulnerable OWASP LLM Top 10 training platform for AI Security, Prompt Injection, RAG Security, Agent Security, and GenAI…☆331Updated this week
- A personal RAG system for offensive security knowledge☆177Aug 11, 2026Updated last month
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Karpathy LLM based claude harness for PenetrationTesting / Bugbounty using obsidian☆329Sep 1, 2026Updated last month
- 🦞 Local, read-only security audit for your OpenClaw agent. Finds config, prompt-injection and supply-chain risks, watches for drift, an…☆58Updated this week
- PenTest and BugBounty 🕵️☆17Sep 15, 2026Updated 2 weeks ago
- GitHub-native command-and-control framework for authorized security research, with encrypted multi-channel transport and resilient failov…☆227Jul 18, 2026Updated 2 months ago
- Recon & pentest skill pack. CORS, XSS, SQLi, SSRF, RCE, WordPress, MCP, cloud, subdomain takeover, and more. Field-tested. MIT. Full writ…☆1,287Sep 1, 2026Updated last month
- A blazingly fast, multi-threaded TUI malware analysis tool built in Rust. Features deep PE parsing, YARA scanning, and heuristic risk sco…☆214Sep 22, 2026Updated last week
- HackAgent is an open-source security toolkit to detect vulnerabilities of your AI Agents☆520Updated this week
- ☆116Mar 30, 2026Updated 6 months ago
- Agentic offensive-security in your terminal☆1,384Aug 31, 2026Updated last month
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Bug Bounty Methodology☆337Aug 4, 2026Updated last month
- Open-source AI pentester that proves every finding. Machine oracles re-run each exploit; verified bugs ship a proof capsule you can repla…☆1,710Sep 13, 2026Updated 2 weeks ago
- AI-powered bug bounty hunting toolkit that works with or without subscription.☆5,231Updated this week
- Stealth hybrid URL mapper☆31May 1, 2026Updated 5 months ago
- Python Exploitation Framework, V8 Engine Debugger, Proxy interceptor, marketplace, post-exploitation, backdoor generator,....☆624Updated this week
- Codex CLI jailbreak guide — customizing system prompt via model_instructions_file config☆209Jul 3, 2026Updated 2 months ago
- A live, browser-based threat intelligence dashboard aggregating 68 curated sources across government advisories, news, research, vendor b…☆16Updated this week
- 66-tool MCP server for dark web intelligence — breach data, ransomware tracking, Tor .onion access, malware analysis, blockchain intel, e…☆465Sep 22, 2026Updated last week
- Bug bounty agent framework for Claude Code, Codex, Gemini, Cursor, Windsurf, Copilot, and OpenClaw — 48 agents, 26 commands, 19 CLI tools…☆981Jun 12, 2026Updated 3 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- AutoAR is an automated security reconnaissance tool, ASM and Discord bot for bug bounty hunters and penetration testers. It automates gat…☆251Sep 17, 2026Updated 2 weeks ago
- ☆13Mar 6, 2025Updated last year
- A tool for detecting subdomain takeover vulnerabilities by checking DNS records☆34May 28, 2026Updated 4 months ago
- ☆15Feb 27, 2026Updated 7 months ago
- powerfull pentesting tool to checking email by smtp command☆10Feb 29, 2024Updated 2 years ago
- ☆1,676Mar 7, 2026Updated 6 months ago
- List of AI Hacking Agents☆691Updated this week
- autonomous red teaming platform; multi-agent offensive-security meta-harness☆6,300Sep 8, 2026Updated 3 weeks ago
- AI 驱动的红队免杀知识库 — AI-generated red team evasion notes☆66Sep 20, 2026Updated last week
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- 面向 Windows 的本地优先 Team 工作流控制台,支持空间管理、账号轮换、顺序队列、浏览器身份快照及 CPA/Sub2API 推送。☆27Jul 17, 2026Updated 2 months ago
- Dump Linux keyrings☆25Jul 15, 2024Updated 2 years ago
- Intentionally Vulnerable Hacking Labs☆618Aug 28, 2026Updated last month
- claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md f…☆7,183Sep 19, 2026Updated last week
- A Claude Code skill bundle for bug hunting and external red-team work - 82 skills, 15 slash commands, 681 disclosed-report patterns curat…☆4,733Updated this week
- A BugBounty playbook covering vulnerability bypasses, payloads, and quick checks for OWASP Top 10 + extras.☆23Sep 29, 2025Updated last year
- A Chrome extension that watches your HackerOne reports and alerts you when their status changes. Its main reason to exist is internal act…☆15Jul 3, 2026Updated 3 months ago