Useful Github Dorks for BugBounty -
☆70Jan 1, 2023Updated 3 years ago
Alternatives and similar repositories for github-dorks
Users that are interested in github-dorks are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Enhanced 403 bypass header☆21Sep 12, 2022Updated 3 years ago
- ☆19Sep 30, 2024Updated last year
- Extract metadata with SSRF (Server-Side Request Forgery)☆16Jul 23, 2022Updated 3 years ago
- A simple bug bounty utility tool to remove uninteresting entries from a list of URLs.☆13Jul 22, 2024Updated last year
- ☆11Dec 5, 2020Updated 5 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- A proof of concept program that pulls and parses security.txt files at mass.☆29May 31, 2023Updated 2 years ago
- This page should help you with the recon for security issues.☆20Oct 14, 2022Updated 3 years ago
- XSSB is a proactive DOM sanitizer, defending against client-side injection attacks!☆38Aug 26, 2018Updated 7 years ago
- ☆21Jun 29, 2022Updated 3 years ago
- Useful Google Dorks for WebSecurity and Bug Bounty☆1,287Jan 24, 2026Updated 3 months ago
- A collection of GitHub dorks for bug bounty hunters☆18Jun 24, 2022Updated 3 years ago
- Powershell modules and commands that come in handy for pentests and red team assessments.☆22Oct 31, 2018Updated 7 years ago
- Custom nuclei templates for bug hunting.....☆26May 30, 2024Updated last year
- A collection of awesome one-liners for bug bounty hunting.☆59Apr 12, 2026Updated last month
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- PoC for CVE-2022-24342: account takeover via CSRF in GitHub authentication☆37Jul 5, 2022Updated 3 years ago
- Burp Suite extension for parsing Swagger web service definition files☆19Jul 15, 2025Updated 10 months ago
- ☆27Aug 5, 2019Updated 6 years ago
- Find subdomains by searching public certificate records☆16Jun 11, 2024Updated last year
- Operators for google search, list of dorks, resources for advanced google search.☆77Jan 29, 2022Updated 4 years ago
- Script to automate bypassing 403 forbidden status code☆24Jun 18, 2025Updated 11 months ago
- ☆32May 30, 2019Updated 6 years ago
- ☆71Nov 8, 2021Updated 4 years ago
- Burp extension to increment a parameter in each active scan request☆12Jul 16, 2025Updated 10 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- PoC of CVE-2022-22978 vulnerability in Spring Security framework☆13Jun 4, 2022Updated 3 years ago
- A multi-threaded scanner that helps identify CORS flaws/misconfigurations☆19Nov 18, 2019Updated 6 years ago
- Chameleon Wordlists☆15Sep 13, 2022Updated 3 years ago
- Official Black Hat Arsenal Security Tools Repository☆19Jan 1, 2018Updated 8 years ago
- Advanced external automation on bug bounty programs by running the best set of tools to perform scanning and finding out vulnerabilities.☆106Jun 28, 2022Updated 3 years ago
- tools to find xss in a website☆59Apr 27, 2022Updated 4 years ago
- Dorks for Bug Bounty Hunting☆192Jul 16, 2024Updated last year
- Write-ups of my findings.☆123Sep 2, 2023Updated 2 years ago
- hostinject (Host Header Injection) Tool is a Python script that allows you to perform host header injection vulnerability testing on a ta…☆29Jun 29, 2023Updated 2 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Mine URLs from Browser's Heap Snapshot for fun and profit☆65Aug 9, 2023Updated 2 years ago
- BetterBugBounty - Here tools are classic, bugs are hunted, and nostalgia is the ultimate weapon!☆30Feb 10, 2024Updated 2 years ago
- Lazy Bloodhound is a toy PHP static code analyzer built on tree-sitter☆13Feb 19, 2021Updated 5 years ago
- Hacker themed Hugo theme based on Nivenly.com☆16Feb 2, 2022Updated 4 years ago
- oneliner commands for bug bounties☆460Jul 25, 2022Updated 3 years ago
- Automatically exported from code.google.com/p/protostar-solutions☆13Mar 26, 2015Updated 11 years ago
- XSScope is one of the most powerful and advanced GUI Framework for Modern Browser exploitation via XSS.☆314Jun 1, 2022Updated 3 years ago