alihussainzada / BugHunterMethodology
A comprehensive bug bounty methodology compiled from extensive research, covering web application reconnaissance, checklists, and methods for identifying various bugs. This guide aims to help bug hunters improve their skills in finding, verifying, and responsibly reporting security vulnerabilities.
☆22Updated 2 months ago
Alternatives and similar repositories for BugHunterMethodology:
Users that are interested in BugHunterMethodology are comparing it to the libraries listed below
- This is a useful Python script for generating a target specific wordlist for fuzzing backup files.☆31Updated last year
- ☆94Updated 4 months ago
- ♥☆82Updated 3 months ago
- ☆36Updated 3 months ago
- Extractify extension is a Chrome extension designed for web security testing, enabling users to efficiently extract JavaScript files and …☆24Updated last month
- A comprehensive collection of various techniques and methods for bypassing Two-Factor Authentication (2FA) security mechanisms.☆40Updated 2 weeks ago
- Go scanner to find web cache poisoning vulnerabilities in a list of URLs☆133Updated 10 months ago
- All About XSS☆12Updated 2 years ago
- 10,000 H1 Disclosed Reports☆86Updated 8 months ago
- Weaponize Your Burp is a repository for automation your Bug Bounty Hunting mindset in Burp Suite☆77Updated 2 years ago
- 🌐 Get Some Useful Info From Domain/IP/ASN 🔥☆18Updated 3 months ago
- ParamScan is a chrome extension for finding reflected parameters in a webpage.☆68Updated last week
- 🔎 Dork Generator☆28Updated last year
- This repo contains different variants of Bug Bounty & Security & Pentest & Tech related Articles☆34Updated last week
- ☆59Updated 3 months ago
- 🕵️♂️🔍 A tool with several scanning techniques that extracts live IP addresses from a list of IP addresses or CIDR notations.☆50Updated last year
- ☆26Updated last year
- ex-param is an automated tool designed for finding reflected parameters for XSS vulnerabilities. It crawls a target website, extracts GET…☆42Updated this week
- This Tool To Test Machine Keys In View State☆60Updated 3 months ago
- List of Directory Traversal/LFI Payloads Scraped from the Internet☆77Updated 2 months ago
- Cloud, WEB, API☆129Updated last month
- ReconMaster contest - scripts used and a write-up☆85Updated 3 years ago
- ☆125Updated 3 years ago
- ☆21Updated 9 months ago
- My custom created nuclei for SQLi, bugbounty, pentesting☆24Updated 3 months ago
- A powerful bash script for massive XSS scanning leveraging Brute Logic's KNOXSS API☆63Updated 3 months ago
- Find All Parameters - Tool to crawl pages, find potential parameters and generate a custom target parameter wordlist☆252Updated 4 months ago
- Ultimate Wordlist for Web Content Discovery☆65Updated last month
- A tool for extract Endpoints, URLs and Secrets from contents☆53Updated 8 months ago