Compilation of scripts/tools (made by me or not) that help me with Pentest and Bug Bounty.
☆25Dec 22, 2025Updated 7 months ago
Alternatives and similar repositories for pentest-scripts
Users that are interested in pentest-scripts are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Tool for advanced mining for content on Github☆54Nov 11, 2025Updated 8 months ago
- My workflow made with shell script, some API's and tools. ;)☆11Jul 7, 2026Updated last month
- Tools used for Pentesting☆22Apr 21, 2023Updated 3 years ago
- ☆13Apr 21, 2021Updated 5 years ago
- Repository to store all audits from public contests, bug bounty programmes☆11Apr 23, 2024Updated 2 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- This is a lazy enumeration script made to make bug bounty enum & pentest flyovers easy as cake!☆13Jun 13, 2020Updated 6 years ago
- pugrecon is a bash script for automatic recon of common vulnerabilities, misconfigurations and files on domains.☆26Mar 18, 2021Updated 5 years ago
- Pentester's Tools Parser (PTP) provides an unified way to retrieve the information from all (final goal) automated pentesting tools and a…☆32Mar 21, 2023Updated 3 years ago
- Compilation of commands, tips and scripts that helped me throughout Vulnhub, Hackthebox, OSCP and real scenarios☆13Jan 17, 2018Updated 8 years ago
- Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.☆10Sep 22, 2023Updated 2 years ago
- A collection of scripts for bug-bounty related stuff☆38Sep 4, 2020Updated 5 years ago
- xsschecker tests endpoints for reflected XSS by injecting payloads and checking responses. It prints vulnerable if the payload is reflect…☆38Nov 3, 2025Updated 9 months ago
- Automatically exported from code.google.com/p/lfimap☆16Mar 5, 2016Updated 10 years ago
- A powerful pentesting tool for proactive detection and exploitation of dependency confusion vulnerabilities in Node.js projects. Enhance …☆14Jul 25, 2023Updated 3 years ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- OsintifyX: Powerful Open-source OSINT tool for extracting valuable information from Instagram profiles. OSINT: Instagram Forensics Tool☆12Feb 19, 2024Updated 2 years ago
- gorobots - robots.txt recon & path discovery in Go. Structured parsing, 29-category sensitivity classification, concurrent path probing, …☆19Apr 10, 2026Updated 4 months ago
- ☆11Jan 23, 2025Updated last year
- KnowsMore is a swiss army knife tool for pentesting Microsoft Active Directory (NTLM Hashes, BloodHound, NTDS and DCSync).☆270Jul 7, 2026Updated last month
- Website com as cartas do Masters of Pwnage, para que qualquer um possa montar um deck jogável.☆18May 14, 2025Updated last year
- A crawler that uses OpenWPM.☆12Dec 26, 2021Updated 4 years ago
- An inventory of tools and resources about CyberSecurity that aims to help people to find everything related to CyberSecurity.☆13Jan 5, 2021Updated 5 years ago
- This repository contains Bug Bounty writeups☆109Updated this week
- Creating them Golden Tickets☆16Jun 24, 2026Updated last month
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- GraphQLmap is a scripting engine to interact with a graphql endpoint for pentesting purposes. - Do not use for illegal testing ;)☆15Mar 11, 2024Updated 2 years ago
- ☆38Oct 3, 2023Updated 2 years ago
- Your bloodhound for hidden info in those JS files.☆18May 13, 2024Updated 2 years ago
- 一个基于eBPF/XDP的高性能端口扫描器 A High-Performance Port Scanner Based on eBPF/XDP☆29Aug 29, 2024Updated last year
- Repository with quick triggers to help during Pentest in an Active Directory environment.☆49Jul 28, 2025Updated last year
- Demo of various ways to exploit post based reflected XSS☆18Jul 6, 2023Updated 3 years ago
- Project infrastructure for FireHOL☆23Dec 31, 2020Updated 5 years ago
- Ansible build for Afl++ Frida-Mode☆25May 11, 2026Updated 2 months ago
- create customized .onion addresses for your hidden service,make shallot and eschalot tools☆13Jan 18, 2022Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- go-utils☆12Nov 22, 2025Updated 8 months ago
- Nexus of Android banking Trojans☆15Oct 11, 2023Updated 2 years ago
- Stupid Simple Detection Testing☆13Mar 7, 2024Updated 2 years ago
- 在线安软识别☆12Aug 6, 2025Updated last year
- This repository contains materials for the Open Legal Data Forum at the Legal Hacker 2019 (September 2019 + Brooklyn, NYC)☆17Dec 8, 2022Updated 3 years ago
- ☆48Mar 25, 2022Updated 4 years ago
- Some applications use SDNS to bypass DNS filters. You can block most public SDNS servers by using these blacklists or create your own lis…☆11Jan 12, 2022Updated 4 years ago