HolyBugx / HolyTips
A Collection of Notes, Checklists, Writeups on Bug Bounty Hunting and Web Application Security.
β1,819Updated 3 years ago
Related projects β
Alternatives and complementary repositories for HolyTips
- For basic researches, top 25 vulnerability parameters that can be used in automation tools or manual recon. π‘οΈβοΈπ§β1,709Updated 5 months ago
- A collection of awesome one-liner scripts especially for bug bounty tips.β2,699Updated 3 months ago
- This repository is about @harshbothra_'s 365 days of Learning Tweets & Mindmaps collection.β1,596Updated 2 years ago
- Bug Bounty Roadmapsβ1,652Updated 3 years ago
- This script grab public report from hacker one and make some folders with poc videosβ874Updated last year
- Ressources for bug bounty huntingβ1,744Updated last year
- BBT - Bug Bounty Tools (examplesπ‘)β1,720Updated 7 months ago
- BUG BOUNTY WRITEUPS - OWASP TOP 10 π΄π΄π΄π΄ββ825Updated 2 years ago
- Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokensβ¦β4,238Updated 3 months ago
- Golden Guideβ475Updated 9 months ago
- PwnFox is a Firefox/Burp extension that provide usefull tools for your security audit.β1,062Updated 3 months ago
- XSS payloads designed to turn alert(1) into P1β1,341Updated last year
- Penetration tests guide based on OWASP including test cases, resources and examples.β2,478Updated 2 years ago
- Payload Arsenal for Pentration Tester and Bug Bounty Huntersβ892Updated last year
- A repository that includes all the important wordlists used while bug hunting.β1,209Updated last year
- β1,019Updated last week
- A collection of hacks and one-off scriptsβ2,149Updated last year
- A Bash script and Docker image for Bug Bounty reconnaissance. Intended for headless use.β875Updated 11 months ago
- β742Updated 4 months ago
- β523Updated 3 years ago
- Bugbounty Resourcesβ532Updated last year
- A bash script that will automatically install a list of bug hunting tools that I find interesting for recon, exploitation, etc. (minus buβ¦β557Updated 2 years ago
- Collection of methodology and test case for various web vulnerabilities.β6,132Updated 3 months ago
- List of Google Dorks for sites that have responsible disclosure program / bug bounty programβ1,215Updated last year
- A Python program to scrape secrets from GitHub through usage of a large repository of dorks.β2,294Updated 3 months ago
- A multi-platform bug bounty toolkit that can be installed on Debian/Ubuntu or set up with Docker.β1,104Updated last year
- A fast tool to scan CRLF vulnerability written in Goβ1,336Updated 2 weeks ago
- Rockyou for web fuzzingβ2,619Updated 2 months ago
- Mind-Maps of Several Thingsβ2,451Updated last year
- A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-referenceβ4,733Updated last year