Complete Solution for VAPT/AppSec and Pentesting Guide: Web | Mobile | API | Thick Client | Source Code Review | DevSecOps | Wireless | Network Pentesting | SAST | DAST etc...
☆1,595Mar 1, 2026Updated 3 weeks ago
Alternatives and similar repositories for PentestingEverything
Users that are interested in PentestingEverything are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- NucleiFuzzer is a robust automation tool that efficiently detects web application vulnerabilities, including XSS, SQLi, SSRF, and Open Re…☆1,826Aug 20, 2025Updated 7 months ago
- A comprehensive guide for web application penetration testing and bug bounty hunting, covering methodologies, tools, and resources for id…☆1,784Sep 11, 2025Updated 6 months ago
- API Pentesting Tools are specialized security tools used to test and analyze the security of Application Programming Interfaces (APIs).☆238Jan 25, 2026Updated 2 months ago
- This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter☆3,275Feb 10, 2024Updated 2 years ago
- OSWE, OSEP, OSED, OSEE☆3,786Jan 2, 2026Updated 2 months ago
- SAST and DAST Scan Supported with 400 plus rules available for secrets and allow you add your own wordlist as well. lightweight source c…☆110Aug 21, 2025Updated 7 months ago
- Pentesting and Bug Bounty Notes, Cheetsheets and Guide for Ethical Hacker, Whitehat Pentesters and CTF Players.☆606Mar 14, 2026Updated last week
- Complete Roadmap for Penetration Testing☆271Sep 16, 2024Updated last year
- Search for all leaked keys/secrets using one regex! bugbounty☆183Mar 29, 2025Updated 11 months ago
- My Notes about Penetration Testing☆732Jan 17, 2026Updated 2 months ago
- ☆13Oct 24, 2024Updated last year
- Tools and Techniques for Red Team / Penetration Testing☆8,587Mar 18, 2025Updated last year
- All about bug bounty (bypasses, payloads, and etc)☆6,672Sep 8, 2023Updated 2 years ago
- AI-powered ffuf wrapper☆651Dec 4, 2025Updated 3 months ago
- ☆688Updated this week
- PEN-300 collection to help you on your exam.☆700Feb 25, 2026Updated 3 weeks ago
- SubOwner - A Simple tool check for subdomain takeovers.☆116Oct 18, 2024Updated last year
- Delve into a comprehensive checklist, your ultimate companion for Android app penetration testing. Identify vulnerabilities in network, d…☆405Oct 20, 2024Updated last year
- A comprehensive collection of resources, tools, tips, and guides for preparing and succeeding in the OSCP (Offensive Security Certified P…☆429Jun 23, 2025Updated 9 months ago
- An insane list of all dorks taken from everywhere from various different sources.☆784Dec 29, 2025Updated 2 months ago
- Subprober is a powerful and efficient subdomain scanning tool written in Python. With the ability to handle large lists of subdomains. Th…☆265Jul 6, 2025Updated 8 months ago
- how to look for Leaked Credentials !☆1,035May 6, 2024Updated last year
- HackTheBox Certified Penetration Tester Specialist Cheatsheet☆712Jul 10, 2024Updated last year
- OSCP Cheat Sheet☆3,669Mar 18, 2026Updated last week
- ☆123Dec 17, 2024Updated last year
- Cybersecurity oriented awesome list☆3,296Mar 16, 2026Updated last week
- Penetration-List: A comprehensive resource for testers, covering all types of vulnerabilities and materials used in Penetration Testing. …☆886Dec 28, 2025Updated 2 months ago
- GoogleDorker - Unleash the power of Google dorking for ethical hackers with custom search precision.☆273Dec 23, 2024Updated last year
- This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 …☆2,488Mar 14, 2026Updated last week
- This repository will contain many mindmaps for cyber security technologies, methodologies, courses, and certifications in a tree structur…☆8,771Mar 14, 2026Updated last week
- A curated list of various bug bounty tools☆5,845Feb 9, 2026Updated last month
- Collection of methodology and test case for various web vulnerabilities.☆7,057Jun 25, 2025Updated 9 months ago
- SpideyX a multipurpose Web Penetration Testing tool with asynchronous concurrent performance with multiple mode and configurations.☆191Mar 18, 2025Updated last year
- ☆1,706Aug 19, 2022Updated 3 years ago
- A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference☆5,581Aug 6, 2023Updated 2 years ago
- This Repositories contains list of One Liners with Descriptions and Installation requirements☆502Jun 28, 2025Updated 8 months ago
- Top disclosed reports from HackerOne☆5,426Feb 28, 2026Updated 3 weeks ago
- Bypass-Four03 is a powerful bash tool designed to help testers bypass HTTP 403 forbidden errors through various path and header manipulat…☆204May 22, 2025Updated 10 months ago
- Collection of Notes and CheatSheets used for Red teaming Certs☆497Feb 13, 2023Updated 3 years ago