Skip to content
View f1cti0nal's full-sized avatar
💭
I may be slow to respond.
💭
I may be slow to respond.

Block or report f1cti0nal

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
  • gosearch Public

    Forked from ibnaleem/gosearch

    🔍 OSINT tool for searching people's digital footprint and leaked passwords across various social networks, written in Go.

    Go GNU General Public License v3.0 Updated Jan 3, 2025
  • HExHTTP Public

    Forked from c0dejump/HExHTTP

    Header Exploitation HTTP

    Python MIT License Updated Jan 3, 2025
  • nuclei Public

    Forked from projectdiscovery/nuclei

    Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the …

    Go MIT License Updated Dec 24, 2024
  • naabu Public

    Forked from projectdiscovery/naabu

    A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface discovery in bug bounties and pentests

    Go MIT License Updated Dec 23, 2024
  • Fast passive subdomain enumeration tool.

    Go MIT License Updated Dec 23, 2024
  • katana Public

    Forked from projectdiscovery/katana

    A next-generation crawling and spidering framework.

    Go MIT License Updated Dec 23, 2024
  • httpx Public

    Forked from projectdiscovery/httpx

    httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.

    Go MIT License Updated Dec 23, 2024
  • A high-speed tool for passively gathering URLs, optimized for efficient and comprehensive web asset discovery without active scanning.

    Go MIT License Updated Dec 23, 2024
  • hakrawler Public

    Forked from hakluke/hakrawler

    Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application

    Go GNU General Public License v3.0 Updated Dec 21, 2024
  • amass Public

    Forked from owasp-amass/amass

    In-depth attack surface mapping and asset discovery

    Go Other Updated Dec 21, 2024
  • commix Public

    Forked from commixproject/commix

    Automated All-in-One OS Command Injection Exploitation Tool.

    Python Other Updated Dec 20, 2024
  • 🪄 XSSDynaGen is a tool designed to analyze URLs with parameters, identify the characters allowed by the server, and generate advanced XSS payloads based on the analysis results.

    Python GNU General Public License v3.0 Updated Dec 20, 2024
  • wpscan Public

    Forked from wpscanteam/wpscan

    WPScan WordPress security scanner. Written for security professionals and blog maintainers to test the security of their WordPress websites. Contact us via contact@wpscan.com

    Ruby Other Updated Dec 16, 2024
  • TCP port scanner, spews SYN packets asynchronously, scanning entire Internet in under 5 minutes.

    C GNU Affero General Public License v3.0 Updated Dec 13, 2024
  • TypeScript Other Updated Dec 12, 2024
  • S3Scanner Public

    Forked from sa7mon/S3Scanner

    Scan for misconfigured S3 buckets across S3-compatible APIs!

    Go MIT License Updated Dec 12, 2024
  • sqlmap Public

    Forked from sqlmapproject/sqlmap

    Automatic SQL injection and database takeover tool

    Python Other Updated Dec 10, 2024
  • oty Public

    Forked from 1hehaq/oty

    Oty is a fast, customizable, CLI tool designed to streamline your Bug Bounty and Pentesting workflows. Powered by a simple yet flexible YAML based DSL, Oty allows you to integrate your tools into it

    Python Updated Dec 9, 2024
  • A list of useful payloads and bypass for Web Application Security and Pentest/CTF

    Python MIT License Updated Dec 4, 2024
  • recx Public

    Forked from 1hehaq/recx

    crawler for finding reflected parameters and reflecting special characters!

    Go MIT License Updated Dec 2, 2024
  • 403Bypasser is a simple plugin that lets you bypass 403 status code by transforming HTTP requests with custom templates.

    TypeScript Creative Commons Zero v1.0 Universal Updated Dec 1, 2024
  • A collection of tiny XSS Payloads that can be used in different contexts. https://tinyxss.terjanq.me

    JavaScript Updated Nov 29, 2024
  • loxs Public

    Forked from coffinxp/loxs

    best tool for finding SQLi,CRLF,XSS,LFi,OpenRedirect

    Python Updated Nov 27, 2024
  • corsExploit Public

    Forked from dmsysop/corsExploit
    HTML Updated Nov 25, 2024
  • payloads Public

    Forked from coffinxp/payloads
    Updated Nov 22, 2024
  • ghauri Public

    Forked from r0oth3x49/ghauri

    An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws

    Python MIT License Updated Nov 21, 2024
  • Updated Nov 21, 2024
  • Python Updated Nov 8, 2024
  • jshunter Public

    Forked from cc1a2b/JShunter

    JShunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive data, such as API endpoints and potential security v…

    Go MIT License Updated Oct 30, 2024
  • gau Public

    Forked from lc/gau

    Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.

    Go MIT License Updated Oct 28, 2024