Structured penetration testing roadmap with labs, milestones, and portfolio tracks.
☆28Feb 11, 2026Updated 3 months ago
Alternatives and similar repositories for Pentest-Roadmap
Users that are interested in Pentest-Roadmap are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆21Sep 17, 2019Updated 6 years ago
- ☆28Feb 3, 2022Updated 4 years ago
- SysTracer: Linux 系统活动跟踪器☆34Dec 14, 2022Updated 3 years ago
- ☆22Jan 11, 2025Updated last year
- attachments for forum of RealWorld CTF 3rd☆41Jan 7, 2021Updated 5 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- My first trial at Ethical Hacking Write Ups☆22Jul 23, 2020Updated 5 years ago
- attachments and (some) writeups/source code for RWCTF 5th☆59Jan 10, 2023Updated 3 years ago
- A repository for all the THM & HTB challenges that I've solved!☆43May 3, 2024Updated 2 years ago
- Challenge attachments for RWCTF 3rd.☆90Jul 1, 2021Updated 4 years ago
- A curated list of tools officially presented at Black Hat events☆812Jul 8, 2025Updated 11 months ago
- Damn Vulnerable API☆91Sep 22, 2025Updated 8 months ago
- Scripts and other stuff.☆133Mar 9, 2026Updated 3 months ago
- This repository contains cheatsheets and payloads compiled from completing the labs at PortSwigger Academy.☆136Dec 29, 2024Updated last year
- hauditor is a tool designed to analyze the security headers returned by a web page.☆178Jul 6, 2024Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Issues with WebSocket reverse proxying allowing to smuggle HTTP requests☆395Aug 15, 2024Updated last year
- Awesome Vulnerable Applications☆1,419Updated this week
- Collection of penetration test reports and pentest report templates. Published by the the best security companies in the world.☆311May 30, 2026Updated last week
- ⚠️ malware development☆706May 15, 2026Updated 3 weeks ago
- A resources for who want to learn and get deep into client-side bugs☆538Dec 8, 2024Updated last year
- A fast tool to scan client-side prototype pollution vulnerability written in Rust. 🦀☆667Aug 28, 2025Updated 9 months ago
- Damn Vulnerable DeFi - Foundry Version☆511Feb 6, 2024Updated 2 years ago
- A Burp Suite extension for identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violati…☆398May 28, 2026Updated last week
- BrutDroid - Android Studio Pentest Automator: Streamline mobile pentesting with automated emulator rooting, Frida, and Burp Suite integra…☆607Jul 17, 2025Updated 10 months ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Ultimate Burp Suite Exam and PortSwigger Labs Guide.☆433Aug 20, 2025Updated 9 months ago
- A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference☆5,961Aug 6, 2023Updated 2 years ago
- A repository that includes all the important wordlists used while bug hunting.☆1,409Mar 11, 2023Updated 3 years ago
- A detailed plan to achieve proficiency in hacking and penetration testing, with pathways including obtaining a degree in cybersecurity or…☆1,276Apr 5, 2025Updated last year
- A wordlist of API names for web application assessments☆914Jun 17, 2025Updated 11 months ago
- Top disclosed reports from HackerOne☆6,185May 25, 2026Updated 2 weeks ago
- ChatGPT Prompts for Bug Bounty & Pentesting☆704Oct 3, 2023Updated 2 years ago
- Organize your API security assessment by using MindAPI. It's free and open for community collaboration.☆873May 27, 2026Updated last week
- completely ridiculous API (crAPI)☆1,521May 14, 2026Updated 3 weeks ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Hacking Books☆1,876Nov 25, 2019Updated 6 years ago
- CTF Cheat Sheet + Writeups / Files for some of the Security CTFs that I've done☆829Nov 18, 2025Updated 6 months ago
- This repo is no longer in use. Please refer to https://github.com/OWASP/www-project-vulnerable-web-applications-directory☆884Apr 13, 2026Updated last month
- Penetration-List: A comprehensive resource for testers, covering all types of vulnerabilities and materials used in Penetration Testing. …☆901Dec 28, 2025Updated 5 months ago
- A curated list of web3Security materials and resources For Pentesters and Bug Hunters.☆1,598Mar 1, 2026Updated 3 months ago
- Vagrant VirtualBox environment for conducting an internal network penetration test☆985Jun 5, 2023Updated 3 years ago
- Automated pentest reporting with custom templates, project tracking, customer dashboard and client management tools. Streamline your secu…☆1,070Mar 31, 2026Updated 2 months ago