Collection of misc IT Security related whitepapers, presentations, slides - hacking, bug bounty, web application security, XSS, CSRF, SQLi
☆62May 4, 2017Updated 9 years ago
Alternatives and similar repositories for security_whitepapers
Users that are interested in security_whitepapers are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature☆38Nov 8, 2017Updated 8 years ago
- Collection of scripts that aid in penetration testing of JSON Web Tokens☆58Feb 2, 2019Updated 7 years ago
- psychoPATH - hunting file uploads & LFI in the dark. This tool is a customisable payload generator designed for blindly detecting LFI & w…☆19Jun 28, 2018Updated 8 years ago
- Collection of different exploitation scenarios of JWT.☆21Jul 23, 2021Updated 5 years ago
- A List Of Labs For People (Students) Who Want Learn OR Practice IT Security / Hacking / Penetration Testing In Ethical Way.☆91Nov 25, 2020Updated 5 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Penetration Testing Methodology - short notes☆11May 30, 2015Updated 11 years ago
- Hunting Bugs for Fun and Profit☆275Jul 29, 2020Updated 6 years ago
- AWS S3 Bucket Finder.☆14Oct 28, 2025Updated 9 months ago
- Learning Penetration Testing of Android Applications☆80Aug 5, 2017Updated 9 years ago
- ☆29May 16, 2019Updated 7 years ago
- Some talks about security☆11Nov 20, 2020Updated 5 years ago
- Scripts and tools for AWS Pentest☆54Oct 22, 2020Updated 5 years ago
- A BurpSuite plugin for BBRF☆27Nov 17, 2024Updated last year
- How to prepare for OSCP complete guide☆130Oct 20, 2019Updated 6 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- It contain google dork to find the wsdl file.☆13May 27, 2020Updated 6 years ago
- Notes and helper scripts/files/etc from when I passed my OSCP☆19Sep 17, 2019Updated 6 years ago
- Misc. Public Reports of Penetration Testing and Security Audits.☆37Jan 8, 2021Updated 5 years ago
- This Burp extension helps you to find usages of postMessage and recvMessage☆14Feb 20, 2020Updated 6 years ago
- Attacking and defending web and VPN session hijacking in Pulse Secure Connect☆14Oct 24, 2019Updated 6 years ago
- React UI☆11Jan 4, 2023Updated 3 years ago
- Docker Pentest Lists are collection of Dockerfiles or Links to Dockerfiles for containers used in Penetration Tests☆21May 1, 2017Updated 9 years ago
- Using censys to find subdomains but without the APIs just scrapping☆16May 13, 2020Updated 6 years ago
- S3 Buckets that will let you list all files inside them☆14Apr 26, 2018Updated 8 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Facebook Bug Bounties☆107Feb 24, 2021Updated 5 years ago
- Password Lists for penetration testing, sorted by language.☆13Nov 23, 2017Updated 8 years ago
- Enumerate S3 buckets via certstream, domain, or keywords☆15Feb 27, 2018Updated 8 years ago
- ☆34Aug 25, 2021Updated 4 years ago
- Resource for developing infosec skills for OSCP☆115Jun 25, 2024Updated 2 years ago
- Capture The Flag Binary fuzzer for Heap challanges☆40Apr 16, 2018Updated 8 years ago
- A sample web application using Node.js, Express and Angular that is vulnerable to common security vulnerabilities.☆10Jun 15, 2023Updated 3 years ago
- Notes for the CRTO exam☆10May 22, 2022Updated 4 years ago
- A burpsuite extension that helps security researchers find public security reports published on h1 based on the selected host☆43May 9, 2020Updated 6 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Extract SSL certificate data (Subject Name, Subject Alt Names, Organisation)☆42Nov 10, 2025Updated 9 months ago
- A CLI that utilizes Okta IdP via SAML to acquire temporary AWS credentials☆10Jun 30, 2021Updated 5 years ago
- ☆19Sep 2, 2021Updated 4 years ago
- A list to discover work of red team tooling and methodology for penetration testing and security assessment☆75Mar 8, 2019Updated 7 years ago
- Virtual scenario for Network Penetration Testing☆14Mar 19, 2017Updated 9 years ago
- A PoC executing shellcode in Dart☆15Jun 28, 2022Updated 4 years ago
- ☆54Aug 10, 2018Updated 8 years ago