KingOfBugbounty / KingOfBugBountyTipsView external linksLinks
Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens that are already exploitable, so we can report them. We wish to influence Onelinetips and explain the commands, for the better understanding of new hunters..
☆5,201Jan 31, 2026Updated 2 weeks ago
Alternatives and similar repositories for KingOfBugBountyTips
Users that are interested in KingOfBugBountyTips are comparing it to the libraries listed below
Sorting:
- A collection of awesome one-liner scripts especially for bug bounty tips.☆3,074Jul 29, 2024Updated last year
- Collection of methodology and test case for various web vulnerabilities.☆6,999Jun 25, 2025Updated 7 months ago
- All about bug bounty (bypasses, payloads, and etc)☆6,611Sep 8, 2023Updated 2 years ago
- Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.☆6,042Aug 14, 2024Updated last year
- BBT - Bug Bounty Tools (examples💡)☆1,880Apr 5, 2024Updated last year
- A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference☆5,532Aug 6, 2023Updated 2 years ago
- This repo contains hourly-updated data dumps of bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) that are eligible for …☆3,639Updated this week
- reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and findin…☆7,192Updated this week
- A list of interesting payloads, tips and tricks for bug bounty hunters.☆6,373Sep 14, 2023Updated 2 years ago
- 🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.☆4,835Updated this week
- Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing☆2,998Jun 24, 2024Updated last year
- The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, f…☆4,346Sep 30, 2024Updated last year
- GF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic, interesting Subs) parameters grep☆1,397Sep 13, 2024Updated last year
- A collection of hacks and one-off scripts☆2,418Mar 13, 2025Updated 11 months ago
- Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.☆4,821Jan 1, 2025Updated last year
- Rockyou for web fuzzing☆3,014Aug 28, 2025Updated 5 months ago
- A list of resources for those interested in getting started in bug bounties☆11,782Jul 23, 2024Updated last year
- HTTP parameter discovery suite.☆6,086Feb 20, 2025Updated 11 months ago
- reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via E…☆8,464Nov 16, 2025Updated 2 months ago
- Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application☆4,991Dec 21, 2024Updated last year
- declutters url lists for crawling/pentesting☆1,522Feb 23, 2025Updated 11 months ago
- Automation for javascript recon in bug bounty.☆1,067Sep 9, 2023Updated 2 years ago
- Hidden parameters discovery suite☆2,015Sep 8, 2024Updated last year
- A python script that finds endpoints in JavaScript files☆4,280Apr 13, 2024Updated last year
- For basic researches, top 25 vulnerability parameters that can be used in automation tools or manual recon. 🛡️⚔️🧙☆1,817Jun 9, 2024Updated last year
- The Swiss Army knife for automated Web Application Testing☆2,324May 8, 2024Updated last year
- A repository that includes all the important wordlists used while bug hunting.☆1,375Mar 11, 2023Updated 2 years ago
- SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files☆2,376May 26, 2024Updated last year
- "Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.☆5,550Feb 8, 2025Updated last year
- A Collection of Notes, Checklists, Writeups on Bug Bounty Hunting and Web Application Security.☆1,969Sep 5, 2021Updated 4 years ago
- Top disclosed reports from HackerOne☆5,297Jan 31, 2026Updated 2 weeks ago
- This repository is about @harshbothra_'s 365 days of Learning Tweets & Mindmaps collection.☆1,691Jun 20, 2022Updated 3 years ago
- A Python program to scrape secrets from GitHub through usage of a large repository of dorks.☆2,486Aug 3, 2024Updated last year
- A collection of tools to perform searches on GitHub.☆1,464Feb 9, 2023Updated 3 years ago
- A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..e…☆1,021Jun 24, 2024Updated last year
- Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3☆2,059Jan 2, 2024Updated 2 years ago
- Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature☆4,059Jul 31, 2024Updated last year
- ⚔️ Web Hacker's Weapons / A collection of cool tools used by Web hackers. Happy hacking , Happy bug-hunting☆4,512Feb 8, 2026Updated last week
- A wrapper around grep, to help you grep for things☆2,075Jun 8, 2024Updated last year