Skip to content
View zerodaykb's full-sized avatar
😀
😀

Block or report zerodaykb

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Supercharge your API testing, catch bugs, and ensure compliance

Python 2,239 154 Updated Sep 20, 2024

Rockyou for web fuzzing

Shell 2,551 461 Updated Aug 27, 2024

Kali Linux Fixes for Newly Imported VM's

Shell 1,875 317 Updated Aug 15, 2024

The AEM Groovy Console provides an interface for running Groovy scripts in the AEM container. Scripts can be created to manipulate content in the JCR, call OSGi services, or execute arbitrary code …

JavaScript 159 94 Updated May 14, 2023

jolokia-exploitation-toolkit

Python 276 29 Updated Mar 24, 2024

bypass-url-parser

Python 998 104 Updated Sep 14, 2024

JexBoss: Jboss (and Java Deserialization Vulnerabilities) verify and EXploitation Tool

Python 2,411 638 Updated Jan 21, 2020

Awesome list of step by step techniques to achieve Remote Code Execution on various apps!

Dockerfile 1,824 211 Updated Oct 7, 2023

A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for attack surface discovery in bug bounties and pentests

Go 4,619 540 Updated Sep 16, 2024

🤖 The Modern Port Scanner 🤖

Rust 14,213 951 Updated Sep 19, 2024

The AWS exploitation framework, designed for testing the security of Amazon Web Services environments.

Python 4,306 688 Updated Sep 18, 2024

The world’s fastest framework for building websites.

Go 74,833 7,465 Updated Sep 20, 2024

Puredns is a fast domain resolver and subdomain bruteforcing tool that can accurately filter out wildcard subdomains and DNS poisoned entries.

Go 1,667 155 Updated Sep 3, 2024

Rust-based high performance domain permutation generator.

Rust 268 30 Updated Dec 2, 2023

Find regular expressions which are vulnerable to ReDoS (Regular Expression Denial of Service)

Python 784 53 Updated Feb 9, 2024

🐛 A list of writeups from the Google VRP Bug Bounty program

Python 1,127 189 Updated Aug 27, 2024

XSS Payload without Anything.

101 30 Updated Jun 28, 2019

Script and resources to execute shell commands using access to a PostgreSQL service

Shell 64 26 Updated Aug 14, 2017

Reverse proxies cheatsheet

Python 1,757 205 Updated Nov 4, 2023

A big list of Android Hackerone disclosed reports and other resources.

1,426 300 Updated Aug 4, 2024

An example project that exploits the default typing issue in Jackson-databind via Spring application contexts and expressions

Java 121 63 Updated Jan 9, 2018

Leverages publicly available datasets from Google BigQuery to generate content discovery and subdomain wordlists

Go 687 96 Updated Feb 12, 2023

Security Mindmap that could be useful for the infosec community when doing pentest, bug bounty or red-team assessments.

726 117 Updated Apr 12, 2022

Tool that will request the public disclosures on a specific HackerOne program and show them in a localhost webserver.

Go 61 19 Updated Feb 26, 2019

Take a list of domains and probe for working HTTP and HTTPS servers

Go 2,823 497 Updated Jun 22, 2024

Repo of useful scripts

Go 104 30 Updated Jun 30, 2020

grep rough audit - source code auditing tool

Shell 1,492 242 Updated Aug 2, 2024

Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application

Go 4,425 486 Updated Jan 23, 2024

Ressources for bug bounty hunting

1,708 555 Updated Dec 1, 2022
Next