PwnMachine is a self hosting solution based on docker aiming to provide an easy to use pwning station for bug hunters.
☆328Jul 31, 2024Updated last year
Alternatives and similar repositories for pwn-machine
Users that are interested in pwn-machine are comparing it to the libraries listed below
Sorting:
- This is a command line tool I use when I want to get notified, on Telegram (on my phone), that something has finished running (on my lapt…☆61Jul 8, 2020Updated 5 years ago
- Tool to find JavaScript files on Websites☆528Nov 2, 2023Updated 2 years ago
- xss development frameworks, with the goal of making payload writing easier.☆154Aug 7, 2024Updated last year
- Change monitoring app that checks the content of web pages in different periods.☆358Feb 21, 2026Updated last month
- a javascript change monitoring tool for bugbounties☆713Jul 31, 2024Updated last year
- A handy DNS service written in Go to aid in the detection of several types of blind vulnerabilities. It monitors a pentester's server for…☆192Sep 6, 2020Updated 5 years ago
- YesWeHack Api Extension for Burp☆96Aug 7, 2024Updated last year
- Deploy a Private Burpsuite Collaborator using boto3 Python Library☆57Feb 20, 2020Updated 6 years ago
- BBT - Bug Bounty Tools (examples💡)☆1,885Apr 5, 2024Updated last year
- A collection of tools to perform searches on GitHub.☆1,471Feb 9, 2023Updated 3 years ago
- Making Favicon.ico based Recon Great again !☆1,269Aug 29, 2023Updated 2 years ago
- PwnFox is a Firefox/Burp extension that provide usefull tools for your security audit.☆1,295Aug 7, 2024Updated last year
- The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, f…☆4,363Sep 30, 2024Updated last year
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆641Jul 7, 2025Updated 8 months ago
- GoFingerprint is a Go tool for taking a list of target web servers and matching their HTTP responses against a user defined list of fing…☆207Jun 21, 2023Updated 2 years ago
- Custom scripts for the PIPER Burp extensions.☆97Sep 24, 2023Updated 2 years ago
- A collection of code for interacting with API sources directly to improve your understanding of those services.☆66Dec 11, 2020Updated 5 years ago
- Random utilities from my security projects that might be useful to others☆183Jan 26, 2025Updated last year
- Get all the CNs from a list of domains☆45Aug 17, 2021Updated 4 years ago
- Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.☆6,113Aug 14, 2024Updated last year
- Easily turn single threaded command line applications into a fast, multi-threaded application with CIDR and glob support.☆1,286Sep 12, 2025Updated 6 months ago
- A fast and accurate DNS resolver written in Rust.☆169Aug 2, 2025Updated 7 months ago
- ☆38Jun 19, 2021Updated 4 years ago
- A collection of hacks and one-off scripts☆2,425Mar 13, 2025Updated last year
- List DTDs and generate XXE payloads using those local DTDs.☆651Feb 21, 2024Updated 2 years ago
- Tool for catching and logging different types of requests.☆220Nov 20, 2020Updated 5 years ago
- Complex payload encoder☆241Jan 20, 2024Updated 2 years ago
- A Chrome Extension to track postMessage usage (url, domain and stack) both by logging using CORS and also visually as an extension-icon☆1,296Jan 26, 2024Updated 2 years ago
- Convolutional neural network for analyzing pentest screenshots☆1,279Mar 8, 2026Updated last week
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆303Feb 12, 2023Updated 3 years ago
- Leverages publicly available datasets from Google BigQuery to generate content discovery and subdomain wordlists☆769Feb 12, 2023Updated 3 years ago
- Contextual Content Discovery Tool☆3,121Apr 29, 2024Updated last year
- A tool to bruteforce nameservers when working with subdomain delegations to AWS.☆58Aug 22, 2019Updated 6 years ago
- ChopChop is a CLI to help developers scanning endpoints and identifying exposition of sensitive services/files/folders.☆709Oct 9, 2023Updated 2 years ago
- Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.☆4,853Jan 1, 2025Updated last year
- Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3☆2,063Jan 2, 2024Updated 2 years ago
- ReconPi - A lightweight recon tool that performs extensive scanning with the latest tools.☆727May 6, 2022Updated 3 years ago
- A fast & light web screenshot without headless browser but Chrome DevTools Protocol!☆185Feb 23, 2026Updated 3 weeks ago
- An open source tool to aid in command line driven generation of bug bounty reports based on user provided templates.☆218Nov 3, 2020Updated 5 years ago