Useful Github Dorks for BugBounty -
☆72Jan 1, 2023Updated 3 years ago
Alternatives and similar repositories for github-dorks
Users that are interested in github-dorks are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆10Apr 30, 2022Updated 4 years ago
- Enhanced 403 bypass header☆21Sep 12, 2022Updated 4 years ago
- ☆19Sep 30, 2024Updated last year
- ☆11Dec 5, 2020Updated 5 years ago
- A simple bug bounty utility tool to remove uninteresting entries from a list of URLs.☆13Jul 22, 2024Updated 2 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Extract metadata with SSRF (Server-Side Request Forgery)☆16Jul 23, 2022Updated 4 years ago
- A proof of concept program that pulls and parses security.txt files at mass.☆30May 31, 2023Updated 3 years ago
- This page should help you with the recon for security issues.☆21Oct 14, 2022Updated 3 years ago
- XSSB is a proactive DOM sanitizer, defending against client-side injection attacks!☆38Aug 26, 2018Updated 8 years ago
- ☆21Jun 29, 2022Updated 4 years ago
- Useful Google Dorks for WebSecurity and Bug Bounty☆1,379Jul 25, 2026Updated last month
- Custom nuclei templates for bug hunting.....☆26May 30, 2024Updated 2 years ago
- A collection of GitHub dorks for bug bounty hunters☆18Jun 24, 2022Updated 4 years ago
- Operators for google search, list of dorks, resources for advanced google search.☆77Jan 29, 2022Updated 4 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- PoC for CVE-2022-24342: account takeover via CSRF in GitHub authentication☆36Jul 5, 2022Updated 4 years ago
- ☆27Aug 5, 2019Updated 7 years ago
- Find subdomains by searching public certificate records☆16Jun 11, 2024Updated 2 years ago
- Burp Suite extension for parsing Swagger web service definition files☆20Jul 15, 2025Updated last year
- Script to automate bypassing 403 forbidden status code☆26Jun 18, 2025Updated last year
- ☆33May 30, 2019Updated 7 years ago
- Burp extension to increment a parameter in each active scan request☆13Aug 6, 2026Updated last month
- PoC of CVE-2022-22978 vulnerability in Spring Security framework☆13Jun 4, 2022Updated 4 years ago
- tools to find xss in a website☆58Apr 27, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A multi-threaded scanner that helps identify CORS flaws/misconfigurations☆19Nov 18, 2019Updated 6 years ago
- Powershell modules and commands that come in handy for pentests and red team assessments.☆23Oct 31, 2018Updated 7 years ago
- Chameleon Wordlists☆15Sep 13, 2022Updated 4 years ago
- Advanced external automation on bug bounty programs by running the best set of tools to perform scanning and finding out vulnerabilities.☆107Jun 28, 2022Updated 4 years ago
- hostinject (Host Header Injection) Tool is a Python script that allows you to perform host header injection vulnerability testing on a ta…☆31Jun 29, 2023Updated 3 years ago
- Dorks for Bug Bounty Hunting☆195Jul 16, 2024Updated 2 years ago
- Agent Browser Bridge for Firefox.☆21Apr 29, 2026Updated 4 months ago
- Mine URLs from Browser's Heap Snapshot for fun and profit☆68Aug 9, 2023Updated 3 years ago
- Write-ups of my findings.☆123Sep 2, 2023Updated 3 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Official Black Hat Arsenal Security Tools Repository☆19Jan 1, 2018Updated 8 years ago
- BetterBugBounty - Here tools are classic, bugs are hunted, and nostalgia is the ultimate weapon!☆30Feb 10, 2024Updated 2 years ago
- Lazy Bloodhound is a toy PHP static code analyzer built on tree-sitter☆13Feb 19, 2021Updated 5 years ago
- Useful scripts for tampermonkey that I used during bug hunting. Will be updated "au fil de l'eau"☆18Jun 2, 2025Updated last year
- XSScope is one of the most powerful and advanced GUI Framework for Modern Browser exploitation via XSS.☆313Jun 1, 2022Updated 4 years ago
- oneliner commands for bug bounties☆461Jul 25, 2022Updated 4 years ago
- Passive subdomain enumeration tool with http-probe.☆32Apr 30, 2021Updated 5 years ago