Contains nuclei templates for security testing and POCs.
☆17Oct 19, 2024Updated last year
Alternatives and similar repositories for bugbounty
Users that are interested in bugbounty are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Automated GitHub secret scanning with smart alerting & monitoring.☆30Jan 15, 2026Updated 2 months ago
- Find The Admin Panel & SQL Injection Endpoints, Using Google Dorks !!!☆26Nov 15, 2024Updated last year
- ☆37Dec 3, 2024Updated last year
- Ollama AI Analyzer runs directly on your local computer, using Ollama's AI models to analyze your HTTP requests and responses. This means…☆32Mar 1, 2025Updated last year
- All-in Fuzzer. Burp suite extension for auto fuzzing params, headers, body☆36Dec 13, 2025Updated 3 months ago
- NordVPN Special Discount Offer • AdSave on top-rated NordVPN 1 or 2-year plans with secure browsing, privacy protection, and support for for all major platforms.
- bring shodan facets into your terminal without API key.☆97Oct 21, 2025Updated 5 months ago
- This tools used for Automating finding of subdomain, and checking for alive subdomain, and gathering js files from all the subdomain and …☆23Jun 28, 2024Updated last year
- Zzl is a reconnaissance tool that collects subdomains from SSL certificates in IP ranges☆44Oct 27, 2024Updated last year
- 3klector is an automation Recon tool which collecting information about Acquisitions and ASN which related to Big Scope company☆47Sep 19, 2022Updated 3 years ago
- A CLI tool to extract, analyze, and filter JavaScript links from web pages or URLs, with regex matching and structured JSON output.☆19Jan 6, 2025Updated last year
- ☆168Feb 11, 2025Updated last year
- The wordlists that have been compiled using disclosed reports at HackerOne bug bounty platform☆25Jun 28, 2020Updated 5 years ago
- ☆25Jan 15, 2024Updated 2 years ago
- ☆21Feb 10, 2026Updated last month
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Takeit is an advanced tool for detecting subdomain takeovers.☆20Aug 25, 2024Updated last year
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆37Jul 27, 2025Updated 7 months ago
- ☆128Jul 15, 2021Updated 4 years ago
- bash script for automating subdomain enumeration process either passive or active☆29Feb 24, 2026Updated last month
- ☆150Feb 3, 2025Updated last year
- A fast, minimalistic scanner for time-based SQL injection (SQLi) detection – built in Go.☆140May 7, 2025Updated 10 months ago
- Welcome to the 403 and 401 Bypass Techniques and Bug Bounty Tips repository! This repo is a collection of methods and strategies to bypas…☆19Dec 26, 2024Updated last year
- SubOwner - A Simple tool check for subdomain takeovers.☆116Oct 18, 2024Updated last year
- ☆61Nov 30, 2024Updated last year
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Welcome to the Bug Hunter's Wordlists repository! 🐛🔍 This repository serves as a comprehensive collection of essential wordlists utiliz…☆153May 17, 2024Updated last year
- Nuclei template generator for WordPress plugins☆23Apr 22, 2024Updated last year
- CosmicSting (CVE-2024-34102)☆48Sep 5, 2024Updated last year
- PoC for leaking text nodes via CSS injection☆25Jul 27, 2024Updated last year
- Fixes corrupted Magic Bytes for PNG, JPG and JPEG☆10Aug 4, 2021Updated 4 years ago
- Burp Suite extension that enhances Burp Active Scan by adding template engine specific SSTI payloads.☆24Feb 20, 2024Updated 2 years ago
- NetScan CLI is a command-line tool for retrieving and analyzing IP address information. It provides detailed subnet and organization data…☆62Sep 4, 2024Updated last year
- ☆15Feb 6, 2025Updated last year
- Firebase_Checker is Python tool to analyze APK files and web applications for Firebase-related vulnerabilities. This tool identifies secu…☆56Nov 6, 2025Updated 4 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- collectvars collects JavaScript variables, highlights risky ones, and helps you understand code structure, while you casually browse.☆33Aug 28, 2024Updated last year
- ☆54Jun 22, 2025Updated 9 months ago
- Passive Web Vulnerability Detection Tool☆37May 5, 2025Updated 10 months ago
- POC for CVE-2024-34102. A pre-authentication XML entity injection issue in Magento / Adobe Commerce.☆31Jun 29, 2024Updated last year
- ☆116Nov 23, 2022Updated 3 years ago
- ☆63Aug 22, 2024Updated last year
- ☆14Aug 22, 2025Updated 7 months ago