This repository is a curated resource for aspiring bug hunters, offering hands-on labs, tools, and structured guidance to support your learning and practical development in the field of ethical hacking and vulnerability research.
☆78Jun 17, 2025Updated last year
Alternatives and similar repositories for Bug-Bounty-Beginner-Roadmap
Users that are interested in Bug-Bounty-Beginner-Roadmap are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Comprehensive Toolkit for Boosting and Fostering Cybersecurity Compliance☆55Nov 26, 2024Updated last year
- This repository is dedicated to documenting and sharing bug bounty reports. The goal is to help security researchers and developers: Le…☆15May 20, 2026Updated 3 weeks ago
- Best Bug Bounty Roadmap for 2026☆66Jan 18, 2026Updated 5 months ago
- This script automates SQL injection testing using SQLMap with AI-powered decision making.☆29Jun 13, 2025Updated last year
- ☆14Jul 29, 2024Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆12Apr 8, 2022Updated 4 years ago
- Brute List is an updated word list for brute-forcing the assets. This is not like a normal outdated word list. I have collected several l…☆32Aug 29, 2021Updated 4 years ago
- دليل الاستجابة للحوادث السيبرانية☆36Feb 7, 2021Updated 5 years ago
- A framework for identifying vulnerabilities in VS Code extensions☆19Jul 9, 2024Updated last year
- ☆30Jan 28, 2023Updated 3 years ago
- Incident Response Plan for all major incidents including cheatsheets for both linux and windows☆13Jun 4, 2020Updated 6 years ago
- List of Mine Private wordlist i use for fuzzing☆96Feb 25, 2026Updated 3 months ago
- ☆411Jun 27, 2024Updated last year
- Manage attack surface data on Elasticsearch☆27Nov 20, 2023Updated 2 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Step by step to learn C++☆28Mar 27, 2021Updated 5 years ago
- Burp Suite extension designed to help security professionals search for custom sensitive information in HTTP responses☆10Apr 25, 2023Updated 3 years ago
- This is a resource factory for anyone looking forward to starting bug hunting and would require guidance as a beginner.☆2,368Mar 3, 2024Updated 2 years ago
- 一个用于修改右键插件菜单层级的Burpsuite插件。A simple BurpSuite extension to change extension context menu level.☆14Jan 15, 2024Updated 2 years ago
- Burp Suite Extensions☆13Oct 19, 2021Updated 4 years ago
- ☆42May 20, 2021Updated 5 years ago
- Process URLs and remove duplicate query parameters.☆27Mar 19, 2024Updated 2 years ago
- Old version of mimikatz for OSCP labs☆18Aug 1, 2020Updated 5 years ago
- Quicky serve files over http or https using flask.☆35Jan 26, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- تجربتي مع اختبار CompTIA Security+☆42Jul 10, 2022Updated 3 years ago
- ☆16Apr 17, 2025Updated last year
- ☆27May 9, 2024Updated 2 years ago
- Vulnerability Assessment and Penetration Testing Toolkit☆18Jan 5, 2022Updated 4 years ago
- Unauthenticated Remote Code Execution in SPIP versions up to and including 4.2.12☆13Aug 12, 2024Updated last year
- Misr: The Ultimate Vulnerability Scanner☆16Aug 9, 2024Updated last year
- An automated bug hunting tool for comprehensive reconnaissance, including subdomain enumeration, port scanning, vulnerability detection, …☆15Jun 24, 2025Updated 11 months ago
- Burp Suite extension to passively scan for applications revealing server error messages☆16Aug 15, 2023Updated 2 years ago
- Passively check for XSS character encodings☆20Mar 9, 2026Updated 3 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ex-param is an automated tool designed for finding reflected parameters for XSS vulnerabilities. It crawls a target website, extracts GET…☆61Feb 22, 2025Updated last year
- A repo for tools, utils, and wrappers that are to small to put in their own repo.☆23Mar 18, 2023Updated 3 years ago
- Developed a Software that detects students face and then marks attendance after training face recognizer☆10Apr 30, 2018Updated 8 years ago
- qTox website source☆13Apr 20, 2025Updated last year
- Simple Secure Static (HTTPS) File Server with embedded certificate☆49Apr 9, 2023Updated 3 years ago
- BoltWire v6.03 vulnerable to "Improper Access Control"☆14Oct 31, 2023Updated 2 years ago
- MANRS Implementation Guide☆12Oct 19, 2022Updated 3 years ago