Sec-Payloads, It's a collection of multiple types of lists used during security assessments & used for bug bounty hunting or penetration testing, collected in one place. List types include xss, sqli, sensitive data patterns, fuzzing payloads, web shells, and many more.
☆10Nov 17, 2025Updated 8 months ago
Alternatives and similar repositories for SecPayloads
Users that are interested in SecPayloads are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Snort 2.9.8.x on Ubuntu 16 LTS with Barnyard2, PulledPork, and Snorby☆11Apr 10, 2016Updated 10 years ago
- A Burp Suite extension that converts IP addresses to decimal notation, useful for SSRF bypass and WAF evasion testing. Created by Harshad…☆13Dec 9, 2024Updated last year
- Simple tmux session management.☆16Dec 16, 2023Updated 2 years ago
- Woobu Autonomous Drone is a flying machine project. Code Completed. This project uses Raspberry Pi Pico plus MPU6050 as main hardware, an…☆25Mar 17, 2026Updated 4 months ago
- Chest X Ray Medical Diagnosis with Deep Learning☆14Mar 20, 2025Updated last year
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Kubernetes, Clusters and Dockers Enumeration in GCP and AWS environments☆12Nov 23, 2023Updated 2 years ago
- XSS-Freak is an xss scanner fully written in python3 from scratch. it is one of its kind since it crawls the website for all possible lin…☆15Nov 25, 2019Updated 6 years ago
- BurpSuite Extension leveraging new Montoya API to automatically sets payload positions to your inruder tab saving you time during VAPT.☆18Feb 21, 2026Updated 5 months ago
- This script is used to search for cloud certificate entities such as Amazon, Azure, and others that have been extracted by the kaeferjaeg…☆56Nov 21, 2025Updated 8 months ago
- ex-redirect — An automated open redirect scanner using Wayback Machine archives. Supports subdomain grouping, live URL filtering, and Wor…☆15May 9, 2025Updated last year
- [Forked] This repo is for learning various heap exploitation techniques.☆10Sep 6, 2018Updated 7 years ago
- Automatic tool to find Google Dorks☆36Oct 25, 2024Updated last year
- Automate bug bounty recon using bash alias☆15Aug 6, 2024Updated last year
- The NodeJs cookie stealer is a tool that can be used in penetration testing and XSS attacks to steal browser cookies from victims.☆13Apr 5, 2023Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- XSS scanner tool to scan a list of URLs provided in a .txt file for reflected XSS(rxss) vulnerabilities. This tool is designed to efficie…☆14Jun 29, 2024Updated 2 years ago
- An automated bug hunting tool for comprehensive reconnaissance, including subdomain enumeration, port scanning, vulnerability detection, …☆15Jun 24, 2025Updated last year
- Auth Mutator is a Burp Suite extension that helps you experiment with mutated authentication requests while keeping the original traffic …☆16Jul 1, 2026Updated 3 weeks ago
- ☆16Dec 28, 2024Updated last year
- Command-line tool for rendering bar charts that can be displayed directly in the terminal or in text-based files like Markdown.☆19Jul 7, 2024Updated 2 years ago
- List of MurmurHash3 favicon hashes of widely used technologies by vendor to search with Shodan.☆39Apr 14, 2024Updated 2 years ago
- This plant leaf disease detection project was developed using Python, Flask, TensorFlow, and NumPy. The model was trained over 3000+ data…☆12Jul 30, 2023Updated 2 years ago
- CVE-2025-4123 - Grafana Tool☆32Jun 4, 2025Updated last year
- Payloads for SQLi☆19May 2, 2020Updated 6 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆24Mar 3, 2020Updated 6 years ago
- Built a deep learning model using tensorflow and keras in python for grape leaf disease detection. Used OpenCV for image processing☆15Oct 14, 2019Updated 6 years ago
- This Arduino sketch uses RCSwitch library and Flipper Zero to receive and process RF signals. The code listens for a 12-bit CAME protocol…☆35Apr 16, 2023Updated 3 years ago
- Hidden input parameters finder☆19Jul 10, 2023Updated 3 years ago
- A comprehensive collection of study materials, practice exams, and resources that helped me successfully pass the CISSP exam.☆14Feb 7, 2025Updated last year
- Generic fuzzing wordlist to test for SQLi. Merged from different SQLi wordlists.☆18Jul 24, 2021Updated 5 years ago
- Your all in one Git, Github and Terminal Commands!☆13Dec 4, 2022Updated 3 years ago
- Fast path fuzzing for hidden web directories.☆18Aug 6, 2025Updated 11 months ago
- SC-200: Microsoft Security Operations Analyst, by Packt Publishing☆18Jan 30, 2023Updated 3 years ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- This script is used to automatically start/stop ec2 instance to match target ip in aws ip pool to takeover subdomain..☆17Oct 8, 2023Updated 2 years ago
- A collection of Nmap NSE scripts that I made.☆31Jan 14, 2013Updated 13 years ago
- ParamScan is a chrome extension for finding reflected parameters in a webpage.☆93Jan 11, 2025Updated last year
- NexusBrute: A modular Node.js toolkit for ethical security testing. Features Smart Brute, API Fuzzer, Session Logger, and more ... Use r…☆19Jan 6, 2026Updated 6 months ago
- File Upload checklist For Penetration test and RedTeam☆18Nov 16, 2025Updated 8 months ago
- Offensive Hacking Unfolded - Become a Pro Pentester, by Packt Publishing☆20Jan 18, 2023Updated 3 years ago
- simple bash script to earn bounties☆37Apr 27, 2024Updated 2 years ago