Monitors and curates bug-bounty related repositories weekly (Monday).
☆81Aug 24, 2026Updated this week
Alternatives and similar repositories for BountyHound
Users that are interested in BountyHound are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆15May 6, 2023Updated 3 years ago
- An python script that use apkleaks to scan the android application over web☆11Jun 2, 2022Updated 4 years ago
- CORS Exploit POC for WordPress REST API☆11Oct 27, 2024Updated last year
- This is a compiled cheatsheet from my experience of OSCP 2023 journey. Won't say it is all-rounded but a good starting point if you wanna…☆14Oct 17, 2024Updated last year
- Passive Web Vulnerability Detection Tool☆38May 5, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- JSHawk is a powerful, context-aware JavaScript security scanner that hunts for exposed credentials, API keys, and sensitive information i…☆17Apr 13, 2026Updated 4 months ago
- vulntechfinder is a powerful security tool that automates vulnerability scanning based on technology stack detection. It intelligently pr…☆20Aug 23, 2026Updated last week
- Autonomous Bug Bounty Hunting Framework powered by Claude Code. 20 AI agents, state-machine orchestration, Burp Suite MCP, credential vau…☆65May 19, 2026Updated 3 months ago
- A Productivity-Boosting Burp Suite extension written in Kotlin that enables persistent sticky session handling in web application testing…☆15Oct 8, 2025Updated 10 months ago
- A red-team script that you can run in the background for scanning during a pentest☆16Feb 16, 2026Updated 6 months ago
- How to do recon on a web-application properly☆16Jul 12, 2022Updated 4 years ago
- ☆25Nov 20, 2023Updated 2 years ago
- Unauthenticated RCE on cups-browsed (exploit and nuclei template)☆17Oct 3, 2024Updated last year
- ☆15Jan 27, 2022Updated 4 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Browser-based iOS IPA security analyzer.☆85May 30, 2026Updated 2 months ago
- C2 Framework - Advanced Red Team Tool☆22Jun 1, 2026Updated 2 months ago
- An ultra lightweight web screenshot tool with advanced DOM analysis features.☆46Apr 1, 2026Updated 4 months ago
- BurpSiute - BurpBounty Profiles☆20Feb 10, 2023Updated 3 years ago
- Community curated list of templates for the erebus engine to find security vulnerabilities.☆16Jul 10, 2021Updated 5 years ago
- Red Team Operations Framework☆30Jul 14, 2024Updated 2 years ago
- Live runtime audit for installed Android apps. Runs on the rooted phone, serves a browser dashboard.☆32May 23, 2026Updated 3 months ago
- This repository shows my effort to create a pandoc based pentest report template.☆12Aug 25, 2019Updated 7 years ago
- A collection of study notes and resources for the Offensive Security Certified Professional (OSCP) certification exam. Includes summaries…☆75Nov 15, 2025Updated 9 months ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- GarudRecon automates domain recon with top open-source tools to discover assets, enumerate subdomains, and detect XSS, SQLi, LFI, RCE & m…☆266Mar 28, 2026Updated 5 months ago
- This GitHub Pages site serves as a creative demonstration of website defacement, featuring an engaging interface and audio elements. IT i…☆13Sep 25, 2024Updated last year
- The powerfull Extract and Scanner Javascript urls (Upgrade Deeper search)☆25Nov 7, 2024Updated last year
- ☆52Oct 1, 2025Updated 10 months ago
- Living off the Land (LOL) attack techniques, tools, and defender resources☆41May 1, 2026Updated 3 months ago
- XSS reflector vulnerabilities exploitation extended.☆28Jul 25, 2021Updated 5 years ago
- JS+ is a browser extension that captures JS URLs from specified domains and scans them with AI.☆22Mar 16, 2026Updated 5 months ago
- Burp plugin for jxscout☆25May 12, 2025Updated last year
- The Dependency Confusion vulnerability scanner and autoexploitation tool to help identifying and mitigating supply chain attacks☆37Feb 20, 2024Updated 2 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Responser☆55Apr 18, 2022Updated 4 years ago
- Repository aimed at helping to perform pentests on flutter applications☆19Jul 10, 2024Updated 2 years ago
- [experiment] Generate Nuclei templates for CVEs using chatGPT☆18Nov 10, 2024Updated last year
- A structured, auto-updating archive of disclosed HackerOne reports. Filter by severity, CWE weakness, bounty program, or year - ideal for…☆39Updated this week
- ☆29Mar 3, 2022Updated 4 years ago
- The all-in-one hacking toolbox for hardware penetration testing.☆19Jun 4, 2024Updated 2 years ago
- Recently, the OpenSSH maintainers released security updates to fix a critical vulnerability that could lead to unauthenticated remote cod…☆14Jul 2, 2024Updated 2 years ago