Documenting my security research journey: This repository contains detailed vulnerability write-ups, proof-of-concept (PoC) exploits, and the custom automation tools I use for reconnaissance and system assessment.
☆61Jul 21, 2026Updated last week
Alternatives and similar repositories for bug-bounty
Users that are interested in bug-bounty are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- My personal research on quantum mechanics and quantum computing.☆17Apr 16, 2026Updated 3 months ago
- Hands-on cybersecurity projects built for learning, experimentation, and practical security research — featuring offensive and defensive …☆16Jul 16, 2026Updated 2 weeks ago
- A simple HAR-based JavaScript recon automation kit for organizing JS files, endpoints, secrets, and gf-filtered attack surface during bug…☆18May 20, 2026Updated 2 months ago
- Explore free, self-hostable network services & web apps: email, file sharing, CMS, and more. Includes setup guides and Docker support for…☆15Apr 16, 2026Updated 3 months ago
- GromHacks Labs -- The payload lists they don't want you to have. 1,324 injection probes beamed down from the mothership to detect what's …☆36Apr 12, 2026Updated 3 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Auth Mutator is a Burp Suite extension that helps you experiment with mutated authentication requests while keeping the original traffic …☆16Updated this week
- Welcome to the Bug Bounty Methodology 2026 Edition!☆77Mar 28, 2026Updated 4 months ago
- Tutorial Dasar Codeigniter☆13Oct 3, 2019Updated 6 years ago
- Jamku Portal, An automated tax litigation management tool to fetch data from Income tax, GST, Traces☆16Jul 27, 2026Updated last week
- A library used to detect vanishing points and camera parameters from an image.☆10Apr 20, 2018Updated 8 years ago
- Full-stack server fingerprinting tool for bug bounty hunters — auto-detects server, CDN, WAF, SSL, ports & more☆20Mar 8, 2026Updated 4 months ago
- Stealth hybrid URL mapper☆26May 1, 2026Updated 3 months ago
- HaXder is an advanced, asynchronous reconnaissance framework for security researchers. Discover subdomains, map attack surfaces, fingerpr…☆49Jul 1, 2026Updated last month
- ☆78May 5, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- PenTest and BugBounty 🕵️☆16Jul 11, 2026Updated 3 weeks ago
- ☆10Jan 22, 2016Updated 10 years ago
- Awesome Bug bounty tools☆14Jun 28, 2024Updated 2 years ago
- ☆16Oct 14, 2022Updated 3 years ago
- CVE-2026-63030, CVE-2026-60137, wp2shell scanner☆46Jul 18, 2026Updated 2 weeks ago
- A curated collection of my security research and bug bounty writeups, documenting real-world vulnerabilities, exploitation methods☆26Jul 15, 2026Updated 2 weeks ago
- ex-redirect — An automated open redirect scanner using Wayback Machine archives. Supports subdomain grouping, live URL filtering, and Wor…☆15May 9, 2025Updated last year
- ☆96May 11, 2026Updated 2 months ago
- Fast Go-based XSS assessment toolkit☆20Mar 18, 2026Updated 4 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Some CTFs and challenges writeups from differents CTF Platforms☆17Oct 31, 2025Updated 9 months ago
- Interactive XSS Labs to get into Client-Side Hacking☆96Feb 25, 2026Updated 5 months ago
- Proof of concept exploit about OpenSSL signature_algorithms_cert DoS flaw (CVE-2020-1967)☆20Jun 16, 2024Updated 2 years ago
- A collection of advanced Python scripts for cybersecurity, penetration testing, and ethical hacking.☆132Jul 16, 2026Updated 2 weeks ago
- Pentest and manual code review templates -- web/API, cloud (AWS/GCP/Azure), mobile (iOS/Android), thick client, hardware/IoT, plus 11 lan…☆29Apr 12, 2026Updated 3 months ago
- 必应每日壁纸数据采集脚本、必应壁纸历史数据API和必应壁纸在线浏览。☆10Dec 31, 2020Updated 5 years ago
- At this repo you can find any tools, tricks or templates for general penetration testing assesment☆16Apr 27, 2024Updated 2 years ago
- A structured and beginner-friendly knowledge base for learning Certified Ethical Hacker (CEH v13) concepts. This repository contains cle…☆29Mar 11, 2026Updated 4 months ago
- Gampung tools for find nuclei template from github☆12Sep 6, 2023Updated 2 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- A diagnostic methodology for bypassing LLM defense layers — from input filters to persistent memory exploitation.☆37May 8, 2026Updated 2 months ago
- 🗄 CLI archival tool for the Wayback Machine☆11Mar 5, 2023Updated 3 years ago
- This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter☆35Feb 10, 2024Updated 2 years ago
- This is the report that goes with my mock full-scope red team engagement against Game of Active Directory.☆20Oct 26, 2025Updated 9 months ago
- Certified ethical hacker V13 AI Study notes☆23Jan 27, 2026Updated 6 months ago
- Passive JavaScript reconnaissance for penetration testers — bridging Burp Suite traffic into structured, AST-based analysis in VSCode.☆36Feb 5, 2026Updated 5 months ago
- Bug bounty methodology, checklists, and hunting notes.☆30Jul 10, 2026Updated 3 weeks ago