A list of useful payloads and bypass for Web Application Security and Pentest/CTF
☆77,765Apr 22, 2026Updated 3 weeks ago
Alternatives and similar repositories for PayloadsAllTheThings
Users that are interested in PayloadsAllTheThings are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in …☆70,971Updated this week
- PEASS - Privilege Escalation Awesome Scripts SUITE (with colors)☆19,848Updated this week
- Impacket is a collection of Python classes for working with network protocols.☆15,710Updated this week
- Scripted Local Linux Enumeration & Privilege Escalation Checks☆7,919Sep 6, 2023Updated 2 years ago
- Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabl…☆28,713Updated this week
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Fast web fuzzer written in Go☆16,063Apr 26, 2026Updated 3 weeks ago
- GTFOBins is a curated list of Unix-like executables that can be used to bypass local security restrictions in misconfigured systems.☆13,210Apr 20, 2026Updated 3 weeks ago
- Nishang - Offensive PowerShell for red team, penetration testing and offensive security.☆9,917Apr 25, 2024Updated 2 years ago
- In-depth attack surface mapping and asset discovery☆14,563Apr 17, 2026Updated last month
- Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.☆8,902Nov 10, 2023Updated 2 years ago
- PowerSploit - A PowerShell Post-Exploitation Framework☆12,981Aug 17, 2020Updated 5 years ago
- A swiss army knife for pentesting networks☆9,134Dec 6, 2023Updated 2 years ago
- Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and n…☆11,282May 12, 2026Updated last week
- Web path scanner☆14,265Apr 29, 2026Updated 2 weeks ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- This repository contains cutting-edge open-source security tools (OST) for a red teamer and threat hunter.☆10,322May 7, 2026Updated last week
- A list of interesting payloads, tips and tricks for bug bounty hunters.