hakluke / bug-bounty-standards
A list of edge cases that occur in bug bounty programs, conversations on how they should be handled. The goal is to standardise the way that specific situations are handled in bug bounties.
☆231Updated 3 years ago
Alternatives and similar repositories for bug-bounty-standards:
Users that are interested in bug-bounty-standards are comparing it to the libraries listed below
- Burp extension to create target specific and tailored wordlist from burp history.☆238Updated 3 years ago
- Repository to house markdown templates for researchers☆198Updated last month
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆310Updated 5 months ago
- ☆171Updated 2 months ago
- Whitebox source code review cheatsheet (Based on AWAE syllabus)☆133Updated 3 years ago
- ☆154Updated 2 years ago
- Web Application Security Testing Tools☆244Updated last year
- IIS shortname scanner written in Go☆332Updated 2 years ago
- De-clutter a list of URLs☆336Updated 5 months ago
- Prototype pollution scanner using headless chrome☆218Updated 2 years ago
- ☆100Updated last year
- Quickly generate context-specific wordlists for content discovery from lists of URLs or paths☆222Updated 3 years ago
- List of reporting templates I have used since I started doing BBH.☆297Updated 7 months ago
- Unofficial documentation for the great tool Param Miner☆179Updated 2 years ago
- Secret and/or credential patterns used for gf.☆241Updated 2 years ago
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.☆190Updated 9 months ago
- Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.☆502Updated 2 months ago
- Burp Extension for easily creating Wordlists☆210Updated 3 years ago
- Useful "Match and Replace" burpsuite rules☆346Updated last year
- A reverse whois tool based on Whoxy API.☆166Updated last year
- EvenBetter is a frontend Caido plugin that makes the Caido experience even better 😎☆143Updated last week
- ☆97Updated 3 years ago
- PDF slides☆247Updated 3 years ago
- A Firefox Web Extension to improve the discovery of DOM XSS.☆270Updated 5 months ago
- ☆189Updated 9 months ago
- A fast and minimal JS endpoint extractor☆348Updated 5 months ago
- Burpsuite plugin for Interact.sh☆221Updated 10 months ago
- Escalate your SSRF vulnerabilities on Modern Cloud Environments. `surf` allows you to filter a list of hosts, returning a list of viable …☆634Updated last year
- ☆151Updated last year
- oneliner commands for bug bounties☆444Updated 2 years ago