nahamsec / Resources-for-Beginner-Bug-Bounty-HuntersLinks
A list of resources for those interested in getting started in bug bounties
☆11,534Updated last year
Alternatives and similar repositories for Resources-for-Beginner-Bug-Bounty-Hunters
Users that are interested in Resources-for-Beginner-Bug-Bounty-Hunters are comparing it to the libraries listed below
Sorting:
- A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference☆5,339Updated 2 years ago
- A list of interesting payloads, tips and tricks for bug bounty hunters.☆6,278Updated 2 years ago
- Collection of methodology and test case for various web vulnerabilities.☆6,616Updated 3 months ago
- A comprehensive curated list of available Bug Bounty & Disclosure Programs and Write-ups.☆5,153Updated last year
- Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens…☆4,735Updated 8 months ago
- All about bug bounty (bypasses, payloads, and etc)☆6,447Updated 2 years ago
- A collection of custom security tools for quick needs.☆3,243Updated 2 years ago
- Open source education content for the researcher community☆2,722Updated 3 years ago
- Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature☆3,983Updated last year
- A curated list of various bug bounty tools☆5,362Updated 2 weeks ago
- Penetration tests guide based on OWASP including test cases, resources and examples.☆2,689Updated 3 years ago
- articles☆13,330Updated 2 years ago
- Mind-Maps of Several Things☆2,583Updated 2 years ago
- Bug Bounty Roadmaps☆1,708Updated 4 years ago
- The Bug Hunters Methodology☆4,151Updated 2 years ago
- This cheasheet is aimed at the CTF Players and Beginners to help them understand the fundamentals of Privilege Escalation with examples.☆3,478Updated 2 years ago
- Ressources for bug bounty hunting☆1,863Updated 2 years ago
- Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.☆5,769Updated last year
- AutoRecon is a multi-threaded network reconnaissance tool which performs automated enumeration of services.☆5,712Updated 4 months ago
- The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, f…☆4,290Updated last year
- Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application☆4,876Updated 9 months ago
- A list of public penetration test reports published by several consulting firms and academic security groups.☆9,148Updated 2 months ago
- This is a resource factory for anyone looking forward to starting bug hunting and would require guidance as a beginner.☆2,168Updated last year
- 🎯 Command Injection Payload List☆3,545Updated last year
- A curated list of awesome OSCP resources☆3,225Updated last year
- ⚔️ Web Hacker's Weapons / A collection of cool tools used by Web hackers. Happy hacking , Happy bug-hunting☆4,176Updated last month
- Top disclosed reports from HackerOne☆4,880Updated 3 weeks ago
- This repo contains hourly-updated data dumps of bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) that are eligible for …☆3,478Updated this week
- List of Awesome Red Teaming Resources☆7,502Updated last year
- "Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.☆5,370Updated 7 months ago