PwnMachine is a self hosting solution based on docker aiming to provide an easy to use pwning station for bug hunters.
☆324Jul 31, 2024Updated last year
Alternatives and similar repositories for pwn-machine
Users that are interested in pwn-machine are comparing it to the libraries listed below
Sorting:
- This is a command line tool I use when I want to get notified, on Telegram (on my phone), that something has finished running (on my lapt…☆61Jul 8, 2020Updated 5 years ago
- Tool to find JavaScript files on Websites☆526Nov 2, 2023Updated 2 years ago
- xss development frameworks, with the goal of making payload writing easier.☆153Aug 7, 2024Updated last year
- A handy DNS service written in Go to aid in the detection of several types of blind vulnerabilities. It monitors a pentester's server for…☆192Sep 6, 2020Updated 5 years ago
- a javascript change monitoring tool for bugbounties☆711Jul 31, 2024Updated last year
- Change monitoring app that checks the content of web pages in different periods.☆359Feb 21, 2026Updated last week
- YesWeHack Api Extension for Burp☆94Aug 7, 2024Updated last year
- A collection of tools to perform searches on GitHub.☆1,467Feb 9, 2023Updated 3 years ago
- BBT - Bug Bounty Tools (examples💡)☆1,883Apr 5, 2024Updated last year
- Deploy a Private Burpsuite Collaborator using boto3 Python Library☆57Feb 20, 2020Updated 6 years ago
- Making Favicon.ico based Recon Great again !☆1,266Aug 29, 2023Updated 2 years ago
- PwnFox is a Firefox/Burp extension that provide usefull tools for your security audit.☆1,291Aug 7, 2024Updated last year
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆642Jul 7, 2025Updated 7 months ago
- The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, f…☆4,350Sep 30, 2024Updated last year
- GoFingerprint is a Go tool for taking a list of target web servers and matching their HTTP responses against a user defined list of fing…☆207Jun 21, 2023Updated 2 years ago
- Easily turn single threaded command line applications into a fast, multi-threaded application with CIDR and glob support.☆1,284Sep 12, 2025Updated 5 months ago
- Get all the CNs from a list of domains☆45Aug 17, 2021Updated 4 years ago
- A collection of hacks and one-off scripts☆2,424Mar 13, 2025Updated 11 months ago
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆303Feb 12, 2023Updated 3 years ago
- A collection of code for interacting with API sources directly to improve your understanding of those services.☆66Dec 11, 2020Updated 5 years ago
- Random utilities from my security projects that might be useful to others☆183Jan 26, 2025Updated last year
- Bucket Flaws ( S3 Bucket Mass Scanner ): A Simple Lightweight Script to Check for Common S3 Bucket Misconfigurations☆58Jul 26, 2020Updated 5 years ago
- Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.☆6,082Aug 14, 2024Updated last year
- List DTDs and generate XXE payloads using those local DTDs.☆648Feb 21, 2024Updated 2 years ago
- Leverages publicly available datasets from Google BigQuery to generate content discovery and subdomain wordlists☆768Feb 12, 2023Updated 3 years ago
- Contextual Content Discovery Tool☆3,096Apr 29, 2024Updated last year
- ChopChop is a CLI to help developers scanning endpoints and identifying exposition of sensitive services/files/folders.☆710Oct 9, 2023Updated 2 years ago
- Urls status code & content length checker☆146Oct 1, 2020Updated 5 years ago
- Custom scripts for the PIPER Burp extensions.☆97Sep 24, 2023Updated 2 years ago
- Pentesting/Bugbounty Dockerfiles.☆176May 29, 2021Updated 4 years ago
- Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3☆2,062Jan 2, 2024Updated 2 years ago
- Complex payload encoder☆240Jan 20, 2024Updated 2 years ago
- A tools for JavaScript Recon☆24Jul 25, 2020Updated 5 years ago
- OSINT tools and more but without API key☆1,482Feb 15, 2026Updated 2 weeks ago
- ☆38Jun 19, 2021Updated 4 years ago
- A fast and accurate DNS resolver written in Rust.☆169Aug 2, 2025Updated 6 months ago
- A collection of custom security tools for quick needs.☆3,284May 1, 2023Updated 2 years ago
- This repo contains hourly-updated data dumps of bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) that are eligible for …☆3,651Updated this week
- A golang utility to spider through a website searching for additional links.☆343Nov 7, 2020Updated 5 years ago