Welcome to the 403 and 401 Bypass Techniques and Bug Bounty Tips repository! This repo is a collection of methods and strategies to bypass 403 and 401 HTTP response codes, along with various tips and tricks for bug bounty hunting. If you're passionate about finding vulnerabilities and improving security, this is the right place for you!
☆38Dec 26, 2024Updated last year
Alternatives and similar repositories for BugBountyTips
Users that are interested in BugBountyTips are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- JS+ is a browser extension that captures JS URLs from specified domains and scans them with AI.☆23Mar 16, 2026Updated 6 months ago
- URILoot is a browser extension designed for Bug Bounty Hunters and Pentesters. Makes fetching uris easy from various sources.☆64Feb 15, 2026Updated 7 months ago
- An obsessive, expert-tier knowledge base + AI skill system for professional bug bounty hunting, security research, and penetration testin…☆52Apr 25, 2026Updated 4 months ago
- Get acquisitions by scraping titles of crunchbase.☆16Dec 18, 2024Updated last year
- ☆39Oct 16, 2025Updated 11 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ♥☆220Sep 7, 2025Updated last year
- Collection of documentation, tools, and tips related to vulnerability research.☆270Updated this week
- A lightweight, fast kernel exploit suggester written in C++ that automatically detects if your Linux kernel is vulnerable to known privil…☆24Jun 27, 2026Updated 2 months ago
- Firebase_Checker is Python tool to analyze APK files and web applications for Firebase-related vulnerabilities. This tool identifies secu…☆59Nov 6, 2025Updated 10 months ago
- ☆13Mar 6, 2025Updated last year
- IDOR Scanner is a Burp Suite extension that automates the detection and enumeration of potentially vulnerable numeric fields to identify …☆46Feb 24, 2025Updated last year
- I-Espresso is a tool that enables users to generate Portable Executable (PE) files from batch scripts. Leveraging IExpress, it demonstrat…☆84Oct 17, 2024Updated last year
- Stealth hybrid URL mapper☆31May 1, 2026Updated 4 months ago
- CoupDeWeb is an automated web vulnerability scanner designed for security researchers and developers. It scans for potential vulnerable …☆34Oct 17, 2024Updated last year
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- all round pentest skill☆432Updated this week
- ☆50Feb 27, 2026Updated 6 months ago
- Burp Suite extension for cross-identity & cross-tenant access-control testing — BAC, IDOR, BOLA, and privilege escalation.☆61Jul 12, 2026Updated 2 months ago
- This script automates SQL injection testing using SQLMap with AI-powered decision making.☆31Jun 13, 2025Updated last year
- A Fuzzing skill based on purely what i know.☆43Jun 3, 2026Updated 3 months ago
- anveshan is a completed script that helps to automate your recon process, It finds subdomains, urls, js files, parameters, screenshots, a…☆29Oct 29, 2024Updated last year
- The Black Mamba — Bug bounty hunting CLI framework. 30+ scanner modules, OWASP Top 10 coverage, Kill Chain methodology and AI-assisted pe…☆16Aug 16, 2026Updated last month
- bring shodan facets into your terminal without API key.☆110Oct 21, 2025Updated 11 months ago
- Burp extension to log requests and responses to PostgreSQL☆16Jun 30, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆16Apr 17, 2025Updated last year
- 0xJS is an AI-powered JavaScript Security Tool☆67Apr 16, 2026Updated 5 months ago
- Contains nuclei templates for security testing and POCs.☆17Oct 19, 2024Updated last year
- ☆201Jan 22, 2026Updated 7 months ago
- Open-source toolkit to identify privilege escalation paths on Linux systems.☆23Feb 23, 2026Updated 6 months ago
- My Main App Hacking CheckList☆35Jun 20, 2026Updated 3 months ago
- Organize, track, and share vulnerability findings effortlessly. This Burp Suite extension integrates with Obsidian, offering a proven not…☆52Apr 5, 2025Updated last year
- Fetch, download, and decompile Android/iOS/Exe assets from HackerOne bug bounty programs☆42Jun 24, 2026Updated 2 months ago
- Gouge is a simple Burp extension to extract or gouge all URLs which are seen in JS files as you visit different websites/webpages in Burp…☆30Jul 21, 2024Updated 2 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Agent Browser Bridge for Firefox.☆21Apr 29, 2026Updated 4 months ago
- AI-powered ffuf wrapper☆807Dec 4, 2025Updated 9 months ago
- Xploitra is a powerful reverse shell payload generator for educational and security testing. It offers customizable payloads with advance…☆74Oct 17, 2024Updated last year
- ☆97May 11, 2026Updated 4 months ago
- ☆266Dec 10, 2025Updated 9 months ago
- TokenTwin Checker — Dual Token BAC/IDOR Tester for Burp Suite☆98Aug 24, 2026Updated 3 weeks ago
- POC Pdf-exploit builder on C#☆12Mar 1, 2024Updated 2 years ago