A comprehensive guide for web application penetration testing and bug bounty hunting, covering methodologies, tools, and resources for identifying and exploiting vulnerabilities.
☆1,850Sep 11, 2025Updated 11 months ago
Alternatives and similar repositories for Massive-Web-Application-Penetration-Testing-Bug-Bounty-Notes
Users that are interested in Massive-Web-Application-Penetration-Testing-Bug-Bounty-Notes are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter☆3,635Feb 10, 2024Updated 2 years ago
- All about bug bounty (bypasses, payloads, and etc)☆6,851Sep 8, 2023Updated 2 years ago
- Penetration-List: A comprehensive resource for testers, covering all types of vulnerabilities and materials used in Penetration Testing. …☆907Dec 28, 2025Updated 8 months ago
- This repository will contain many mindmaps for cyber security technologies, methodologies, courses, and certifications in a tree structur…☆9,256Jul 21, 2026Updated last month
- This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 …☆2,590Mar 14, 2026Updated 5 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Mind-Maps of Several Things☆2,724Jun 29, 2023Updated 3 years ago
- This Repositories contains list of One Liners with Descriptions and Installation requirements☆507Jun 28, 2025Updated last year
- A collection of snippets of codes and commands to make your life easier!☆2,935Sep 25, 2023Updated 2 years ago
- Tools and Techniques for Red Team / Penetration Testing☆9,694Apr 18, 2026Updated 4 months ago
- A cheat sheet that contains advanced queries for SQL Injection of all types.☆3,255May 13, 2023Updated 3 years ago
- Tips and Tutorials for Bug Bounty and also Penetration Tests.☆2,119Oct 7, 2025Updated 11 months ago
- Top disclosed reports from HackerOne☆6,526Aug 17, 2026Updated 3 weeks ago
- A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference☆6,129Aug 6, 2023Updated 3 years ago
- Bug Bounty Tricks and useful payloads and bypasses for Web Application Security.☆806Aug 22, 2026Updated 2 weeks ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A curated list of various bug bounty tools☆6,247Updated this week
- AllForOne allows bug bounty hunters and security researchers to collect all Nuclei YAML templates from various public repositories,☆739Mar 21, 2024Updated 2 years ago
- Collection's of Tech Talk that are presented by me :)☆101Aug 9, 2026Updated 3 weeks ago
- i will upload more templates here to share with the comunity.☆571Apr 17, 2024Updated 2 years ago
- A collection of bookmarks for penetration testers, bug bounty hunters, malware developers, reverse engineers and anyone who is just inte…☆922Aug 30, 2023Updated 3 years ago
- Collection of methodology and test case for various web vulnerabilities.☆7,291Jun 25, 2025Updated last year
- A collection of one-liners for bug bounty hunting.☆1,631Jan 21, 2025Updated last year
- Complete Practical Study Plan to become a successful cybersecurity engineer based on roles like Pentest, AppSec, Cloud Security, DevSecOp…☆5,061Updated this week
- OSCP Cheat Sheet☆3,840Updated this week
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- A list of Google Dorks for Bug Bounty, Web Application Security, and Pentesting☆1,900Sep 29, 2025Updated 11 months ago
- A Burp Suite extension to add OpenAI (GPT) on Burp and help you with your Bug Bounty recon to discover endpoints, params, URLs, subdomain…☆912May 3, 2023Updated 3 years ago
- A collection of awesome one-liner scripts especially for bug bounty tips.☆3,192Jul 29, 2024Updated 2 years ago
- NucleiFuzzer is a robust automation tool that efficiently detects web application vulnerabilities, including XSS, SQLi, SSRF, and Open Re…☆1,865Apr 17, 2026Updated 4 months ago
- A huge chunk of my personal notes since I started playing CTFs and working as a Red Teamer.☆4,086Updated this week
- A OWASP Based Checklist With 500+ Test Cases☆922Oct 26, 2022Updated 3 years ago
- 1337 Wordlists for Bug Bounty Hunting☆983Aug 31, 2026Updated last week
- A repository that includes all the important wordlists used while bug hunting.☆1,431Mar 11, 2023Updated 3 years ago
- ⚔️ Web Hacker's Weapons / A collection of cool tools used by Web hackers. Happy hacking , Happy bug-hunting☆5,056Updated this week
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- ☆428Feb 10, 2022Updated 4 years ago
- OSCP Preparation Guide | Courses, Tricks, Tutorials, Exercises, Machines☆1,102Mar 23, 2026Updated 5 months ago
- This repository contain a CheatSheet for OSWP & WiFi Cracking.☆350Jul 13, 2022Updated 4 years ago
- ☆1,113Jul 26, 2023Updated 3 years ago
- Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens…☆5,533Jul 1, 2026Updated 2 months ago
- ☆301Dec 9, 2022Updated 3 years ago
- A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.☆6,727May 27, 2026Updated 3 months ago