Complete Solution for VAPT/AppSec and Pentesting Guide: Web | Mobile | API | Thick Client | Source Code Review | DevSecOps | Wireless | Network Pentesting | SAST | DAST etc...
☆1,469Feb 27, 2026Updated this week
Alternatives and similar repositories for PentestingEverything
Users that are interested in PentestingEverything are comparing it to the libraries listed below
Sorting:
- NucleiFuzzer is a robust automation tool that efficiently detects web application vulnerabilities, including XSS, SQLi, SSRF, and Open Re…☆1,823Aug 20, 2025Updated 6 months ago
- A comprehensive guide for web application penetration testing and bug bounty hunting, covering methodologies, tools, and resources for id…☆1,774Sep 11, 2025Updated 5 months ago
- This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter☆3,266Feb 10, 2024Updated 2 years ago
- OSWE, OSEP, OSED, OSEE☆3,767Jan 2, 2026Updated 2 months ago
- Complete Roadmap for Penetration Testing☆267Sep 16, 2024Updated last year
- My Notes about Penetration Testing☆730Jan 17, 2026Updated last month
- API Pentesting Tools are specialized security tools used to test and analyze the security of Application Programming Interfaces (APIs).☆236Jan 25, 2026Updated last month
- SAST and DAST Scan Supported with 400 plus rules available for secrets and allow you add your own wordlist as well. lightweight source c…☆110Aug 21, 2025Updated 6 months ago
- Pentesting and Bug Bounty Notes, Cheetsheets and Guide for Ethical Hacker, Whitehat Pentesters and CTF Players.☆599Jan 31, 2026Updated last month
- Tools and Techniques for Red Team / Penetration Testing☆8,534Mar 18, 2025Updated 11 months ago
- AI-powered ffuf wrapper☆646Dec 4, 2025Updated 3 months ago
- All about bug bounty (bypasses, payloads, and etc)☆6,655Sep 8, 2023Updated 2 years ago
- ☆662Updated this week
- Subprober is a powerful and efficient subdomain scanning tool written in Python. With the ability to handle large lists of subdomains. Th…☆262Jul 6, 2025Updated 7 months ago
- Search for all leaked keys/secrets using one regex! bugbounty☆183Mar 29, 2025Updated 11 months ago
- SubOwner - A Simple tool check for subdomain takeovers.☆116Oct 18, 2024Updated last year
- SpideyX a multipurpose Web Penetration Testing tool with asynchronous concurrent performance with multiple mode and configurations.☆190Mar 18, 2025Updated 11 months ago
- Penetration-List: A comprehensive resource for testers, covering all types of vulnerabilities and materials used in Penetration Testing. …☆886Dec 28, 2025Updated 2 months ago
- Bug Bounty Tricks and useful payloads and bypasses for Web Application Security.☆753Nov 19, 2025Updated 3 months ago
- PEN-300 collection to help you on your exam.☆695Feb 25, 2026Updated last week
- Bypass-Four03 is a powerful bash tool designed to help testers bypass HTTP 403 forbidden errors through various path and header manipulat…☆202May 22, 2025Updated 9 months ago
- how to look for Leaked Credentials !☆1,033May 6, 2024Updated last year
- ☆13Oct 24, 2024Updated last year
- Collection of Notes and CheatSheets used for Red teaming Certs☆493Feb 13, 2023Updated 3 years ago
- OSCP Cheat Sheet☆3,642Jan 29, 2026Updated last month
- Cybersecurity oriented awesome list☆3,137Feb 22, 2026Updated last week
- This repository will contain many mindmaps for cyber security technologies, methodologies, courses, and certifications in a tree structur…☆8,664Jun 22, 2025Updated 8 months ago
- Delve into a comprehensive checklist, your ultimate companion for Android app penetration testing. Identify vulnerabilities in network, d…☆400Oct 20, 2024Updated last year
- An insane list of all dorks taken from everywhere from various different sources.☆781Dec 29, 2025Updated 2 months ago
- GoogleDorker - Unleash the power of Google dorking for ethical hackers with custom search precision.☆268Dec 23, 2024Updated last year
- ☆1,698Aug 19, 2022Updated 3 years ago
- This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 …☆2,462Nov 16, 2024Updated last year
- This Repositories contains list of One Liners with Descriptions and Installation requirements☆500Jun 28, 2025Updated 8 months ago
- This repository contains detailed adversary simulation APT campaigns targeting various critical sectors. Each simulation includes custom …☆1,049Feb 26, 2026Updated last week
- A curated list of various bug bounty tools☆5,805Feb 9, 2026Updated 3 weeks ago
- ☆892Sep 5, 2023Updated 2 years ago
- ☆123Dec 17, 2024Updated last year
- AllForOne allows bug bounty hunters and security researchers to collect all Nuclei YAML templates from various public repositories,☆733Mar 21, 2024Updated last year
- Collection of methodology and test case for various web vulnerabilities.☆7,039Jun 25, 2025Updated 8 months ago