Compilation of scripts/tools (made by me or not) that help me with Pentest and Bug Bounty.
☆25Dec 22, 2025Updated 6 months ago
Alternatives and similar repositories for pentest-scripts
Users that are interested in pentest-scripts are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Tools used for Pentesting☆22Apr 21, 2023Updated 3 years ago
- Repository to store all audits from public contests, bug bounty programmes☆11Apr 23, 2024Updated 2 years ago
- This repository contains fully disclosed accepted reports for the null Ahmedabad's Bug Bounty CTF.☆11Oct 31, 2023Updated 2 years ago
- This is a lazy enumeration script made to make bug bounty enum & pentest flyovers easy as cake!☆13Jun 13, 2020Updated 6 years ago
- Auto Web Vulnerability Scanning Framework☆11Feb 3, 2016Updated 10 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Tool for obtaining information about PPL processes☆16Feb 12, 2024Updated 2 years ago
- pugrecon is a bash script for automatic recon of common vulnerabilities, misconfigurations and files on domains.☆26Mar 18, 2021Updated 5 years ago
- My public findings/reports from decentralized audits, select bug bounty programs and engagements☆14Jul 14, 2026Updated last week
- Search and download dictionaries for testing, bruteforcing, fuzzing and exploit-development.☆15Aug 11, 2021Updated 4 years ago
- Compilation of commands, tips and scripts that helped me throughout Vulnhub, Hackthebox, OSCP and real scenarios☆13Jan 17, 2018Updated 8 years ago
- Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.☆11Sep 22, 2023Updated 2 years ago
- Use Python to manipulate Charles session files and send HTTP requests.☆13Dec 8, 2022Updated 3 years ago
- A collection of scripts for bug-bounty related stuff☆39Sep 4, 2020Updated 5 years ago
- Automatically exported from code.google.com/p/lfimap☆16Mar 5, 2016Updated 10 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- A powerful pentesting tool for proactive detection and exploitation of dependency confusion vulnerabilities in Node.js projects. Enhance …☆14Jul 25, 2023Updated 2 years ago
- OsintifyX: Powerful Open-source OSINT tool for extracting valuable information from Instagram profiles. OSINT: Instagram Forensics Tool☆11Feb 19, 2024Updated 2 years ago
- gorobots - robots.txt recon & path discovery in Go. Structured parsing, 29-category sensitivity classification, concurrent path probing, …☆18Apr 10, 2026Updated 3 months ago
- Creating them Golden Tickets☆16Jun 24, 2026Updated 3 weeks ago
- KnowsMore is a swiss army knife tool for pentesting Microsoft Active Directory (NTLM Hashes, BloodHound, NTDS and DCSync).☆268Jul 7, 2026Updated 2 weeks ago
- Shellcode Loader | xss.is☆13Jul 26, 2024Updated last year
- This repository contains Bug Bounty writeups☆107Updated this week
- An inventory of tools and resources about CyberSecurity that aims to help people to find everything related to CyberSecurity.☆13Jan 5, 2021Updated 5 years ago
- Collection of antivirus bypass techniques☆13Nov 20, 2023Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- GraphQLmap is a scripting engine to interact with a graphql endpoint for pentesting purposes. - Do not use for illegal testing ;)☆15Mar 11, 2024Updated 2 years ago
- ☆38Oct 3, 2023Updated 2 years ago
- This repository is made to create your own pentesting reports based on the following templates.☆29Feb 5, 2025Updated last year
- A tool for finding CNAME of subdomains and checking clickjacking vulnerability.☆14Jun 15, 2025Updated last year
- ☆11Dec 22, 2023Updated 2 years ago
- Audio Transcription for WhatsApp☆15Jun 28, 2024Updated 2 years ago
- Black box pen-testing and web based CTFs☆17Mar 6, 2023Updated 3 years ago
- Offensive Web is a documentation website about web security research, bypass and new exploitation techniques.☆34Feb 14, 2026Updated 5 months ago
- Demo of various ways to exploit post based reflected XSS☆18Jul 6, 2023Updated 3 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Project infrastructure for FireHOL☆23Dec 31, 2020Updated 5 years ago
- Ansible build for Afl++ Frida-Mode☆25May 11, 2026Updated 2 months ago
- create customized .onion addresses for your hidden service,make shallot and eschalot tools☆13Jan 18, 2022Updated 4 years ago
- Cobaltstrike UDRL with memory evasion☆15May 16, 2024Updated 2 years ago
- Nexus of Android banking Trojans☆15Oct 11, 2023Updated 2 years ago
- Stupid Simple Detection Testing☆13Mar 7, 2024Updated 2 years ago
- Crackhash is a tool that try to crack different types of hashes using free online services.☆23Oct 29, 2019Updated 6 years ago