Awesome Writeups and POCs
☆572Jul 22, 2026Updated last month
Alternatives and similar repositories for awsome-security-write-ups-and-POCs
Users that are interested in awsome-security-write-ups-and-POCs are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference☆6,104Aug 6, 2023Updated 3 years ago
- Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature☆4,259Jul 31, 2024Updated 2 years ago
- Penetration tests guide based on OWASP including test cases, resources and examples.☆2,827Mar 23, 2022Updated 4 years ago
- A list of interesting payloads, tips and tricks for bug bounty hunters.☆6,536Sep 14, 2023Updated 2 years ago
- This is a collection of writeups, cheatsheets, videos, books related to SSRF in one single location☆1,389Jan 24, 2021Updated 5 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A comprehensive curated list of available Bug Bounty & Disclosure Programs and Write-ups.☆5,880Mar 7, 2026Updated 5 months ago
- SSRF (Server Side Request Forgery) testing resources☆2,506Oct 12, 2024Updated last year
- Ghazi is a BurpSuite Plugins For Testing various PayLoads Like "XSS,SQLi,SSTI,SSRF,RCE and LFI" through Different tabs , Where Each Tab W…☆105Feb 11, 2019Updated 7 years ago
- Just some public notes that can be useful and i want let the world knows.☆92Oct 18, 2020Updated 5 years ago
- A curated list of amazingly awesome Burp Extensions☆3,440Aug 15, 2026Updated 2 weeks ago
- Collection of methodology and test case for various web vulnerabilities.☆7,191Jun 25, 2025Updated last year
- Ressources for bug bounty hunting☆1,971Dec 1, 2022Updated 3 years ago
- Hunting Bugs for Fun and Profit☆274Jul 29, 2020Updated 6 years ago
- Tools and resources for web app hacking. The payloads.txt documents are a must have for your Burpsuite intruder payload armory. They've h…☆28Jun 10, 2019Updated 7 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A collection of custom security tools for quick needs.☆3,328May 1, 2023Updated 3 years ago
- Fuzzing Payloads to Assist in Web Application Testing.☆163Jun 6, 2019Updated 7 years ago
- Hacking Facebook for fun and profit: It’s not that hard, apparently (exclusive)☆62Jul 2, 2019Updated 7 years ago
- A curated list of amazingly bug bounty tips from security researchers around the world.☆107Mar 14, 2019Updated 7 years ago
- A collection of awesome one-liner scripts especially for bug bounty tips.☆3,192Jul 29, 2024Updated 2 years ago
- A big list of Android Hackerone disclosed reports and other resources.☆1,708Sep 10, 2025Updated 11 months ago
- BBT - Bug Bounty Tools (examples💡)☆1,910Apr 5, 2024Updated 2 years ago
- All about bug bounty (bypasses, payloads, and etc)☆6,842Sep 8, 2023Updated 2 years ago
- The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application pen…☆5,259Feb 8, 2024Updated 2 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Top disclosed reports from HackerOne☆6,498Aug 17, 2026Updated 2 weeks ago
- List of Awesome Asset Discovery Resources☆2,836Jan 22, 2025Updated last year
- Facebook Bug Bounties☆107Feb 24, 2021Updated 5 years ago
- List of Awesome Red Teaming Resources☆8,075Dec 28, 2023Updated 2 years ago
- Sublert is a security and reconnaissance tool which leverages certificate transparency to automatically monitor new subdomains deployed b…☆1,034Feb 5, 2021Updated 5 years ago
- Tools & Interesting Things for RedTeam Ops☆2,293Feb 10, 2026Updated 6 months ago
- Web App bug hunting☆579Nov 26, 2025Updated 9 months ago
- Tools and datas related to Bug Bounty.☆234Apr 20, 2022Updated 4 years ago
- The Bug Hunters Methodology☆4,397Aug 1, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,972Sep 27, 2021Updated 4 years ago
- Awesome XSS stuff☆5,141Oct 30, 2024Updated last year
- Azure and AWS Attacks☆1,133Nov 25, 2022Updated 3 years ago
- Mind-Maps of Several Things☆2,724Jun 29, 2023Updated 3 years ago
- An entry level resource to learning bug bounty.☆28Apr 11, 2018Updated 8 years ago
- "Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.☆5,789Feb 8, 2025Updated last year
- Security Mindmap that could be useful for the infosec community when doing pentest, bug bounty or red-team assessments.☆755Apr 12, 2022Updated 4 years ago