kushagrasarathe / beginners-resourcesLinks
This repo contains resources that a beginner would need to get started in Web application penetration testing and bug hunting.
☆18Updated 3 years ago
Alternatives and similar repositories for beginners-resources
Users that are interested in beginners-resources are comparing it to the libraries listed below
Sorting:
- ☆48Updated 4 years ago
- Noobish Recon Automation☆21Updated last year
- 0x0p1n3r is set of combination of other tools and one line scripts to find subdomains easily and to check subdomain takeover☆57Updated 4 years ago
- part of my wordlist to bruteforce DNS to find subdoamains.☆61Updated 4 years ago
- A simple Bash one liner with aim to automate CRLF vulnerability scanning.☆68Updated 5 years ago
- Script for Bug Bounty☆29Updated 4 years ago
- RECON Notes taking from every fucking book about bugbounty and web-app penetration testing exists☆20Updated 5 years ago
- Notes from OSCP, CTF, security adventures, etc...☆62Updated last year
- Fernbach is a vulnerable API written in the Flask micro web framework. The intent of this API is for testing the OWASP top ten vulnerabil…☆30Updated 3 years ago
- Wordlists for intelligent directory brute-forcing☆32Updated 4 years ago
- port+dir+param bruteforcing at the same time using ffuf☆17Updated last year
- Collection of content discovery wordlists in one wordlist.☆38Updated 3 years ago
- ☆44Updated 3 years ago
- List of bug bounty programs of companies/organisations in Switzerland☆13Updated 3 years ago
- AWS S3 open bucket poc automated script.☆57Updated 4 years ago
- gup aka Get All Urls parameters to create wordlists for brute forcing parameters.☆18Updated 3 years ago
- ☆22Updated 4 years ago
- Discovery Header Bug Bounty to DoD☆48Updated 4 years ago
- A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.☆50Updated 5 years ago
- ☆32Updated 4 years ago
- A tool for testing subdomain takeover possibilities at a mass scale.☆49Updated 4 years ago
- Recon Custom WordList Ganerator☆58Updated 5 years ago
- Pentest stuff☆49Updated last year
- A list of threat sinks used in the manual security source code review for application security☆73Updated 2 years ago
- XSSearch is a comprehensive reflected XSS tool built on selenium framework in python language. It contains more than 3000 payloads for au…☆60Updated 3 years ago
- ☆19Updated 4 years ago
- ☆18Updated 5 years ago
- A vulnerability fuzzing tool written in bash, it contains the most commonly used tools to perform vulnerability scan☆79Updated 4 years ago
- Bugbounty utility to store list of enumerated subdomains into an sqlite3 db [one liner style / Pipe and save]☆29Updated 4 years ago
- A training course on Web Security, Exploit Development and Source Code Auditing from 2009.☆12Updated 3 years ago