Skip to content
View mrvcoder's full-sized avatar
🏡
Working From Home
🏡
Working From Home

Block or report mrvcoder

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability

828 113 Updated Dec 31, 2021

Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently supports Azure DevOps, GitHub and GitLab.

Python 266 16 Updated Nov 21, 2024

CeWL is a Custom Word List Generator

Ruby 2,043 264 Updated Oct 28, 2024

A comprehensive bug bounty methodology compiled from extensive research, covering web application reconnaissance, checklists, and methods for identifying various bugs. This guide aims to help bug h…

17 3 Updated Nov 11, 2024
TypeScript 1,310 12 Updated Dec 21, 2024

The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the contr…

Python 11,875 2,359 Updated Jan 4, 2025

World's fastest and most advanced password recovery utility

C 21,716 2,956 Updated Aug 16, 2024

The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf, masscan, nuclei, meg and many more!

Shell 4,092 652 Updated Sep 30, 2024

A high-speed tool for passively gathering URLs, optimized for efficient and comprehensive web asset discovery without active scanning.

Go 470 36 Updated Jan 6, 2025

A stunning, functional and responsive retractable sidebar for Next.js built on top of shadcn/ui.

TypeScript 1,388 177 Updated Nov 19, 2024

Malware Configuration And Payload Extraction

Python 2,093 435 Updated Jan 9, 2025

403/401 Bypass Methods + Bash Automation + Your Support ;)

Shell 1,360 262 Updated Jun 6, 2022

Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!

Go 853 109 Updated Jan 12, 2024

A Burp Suite extension to help pentesters to bypass WAFs or test their effectiveness using a number of techniques

Java 716 105 Updated May 4, 2019

best tool for finding SQLi,CRLF,XSS,LFi,OpenRedirect

Python 840 188 Updated Nov 27, 2024

🎯 SQL Injection Payload List

5,123 1,207 Updated Jul 18, 2024

DOMPurify - a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. DOMPurify works with a secure default, but offers a lot of configurability and hooks. Demo:

JavaScript 14,372 748 Updated Jan 1, 2025
Shell 37 6 Updated Jul 13, 2024

Nginx configuration static analyzer

Python 8,308 399 Updated Jul 28, 2024

A comprehensive list of custom filters for Logger++ to identify various vulnerabilities in different API styles

214 35 Updated Oct 15, 2024

Create tar/zip archives that can exploit directory traversal vulnerabilities

Python 987 182 Updated Jun 3, 2021

Diff, match and patch text in Go

Go 1,874 215 Updated Jul 18, 2024

Anonymous MiniApp Messenger Powered By E2E Encryption (AES + RSA)

Vue 110 3 Updated Sep 3, 2024

Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.

5,215 1,074 Updated Aug 14, 2024

✨ A framework-agnostic tool that converts any layout into a drag-to-swap one with just a few lines of code https://swapy.tahazsh.com/

TypeScript 7,049 145 Updated Dec 20, 2024
Next