An open API service providing repository metadata for many open source software ecosystems.

GitHub topics: web-security

tinaponting/protect-wordpress

Protect wordpress with .htacess for paranoid bloggers

Size: 7.38 MB - Last synced at: about 4 hours ago - Pushed at: about 5 hours ago - Stars: 8 - Forks: 2

palahsu/DDoS-Ripper

DDos Ripper a Distributable Denied-of-Service (DDOS) attack server that cuts off targets or surrounding infrastructure in a flood of Internet traffic

Language: Python - Size: 892 KB - Last synced at: about 4 hours ago - Pushed at: 11 months ago - Stars: 2,357 - Forks: 571

adilhyz/WebShell

Backdoor Collection 👾

Language: PHP - Size: 11.2 MB - Last synced at: about 16 hours ago - Pushed at: about 16 hours ago - Stars: 15 - Forks: 6

aaPanel/aaWAF

堡塔云WAF,宝塔免费(free)的私有云网站应用防火墙(firewall),基于docker/nginx/lua开发

Language: Go - Size: 15.4 MB - Last synced at: about 11 hours ago - Pushed at: about 24 hours ago - Stars: 435 - Forks: 88

cosmin-panescu/Web-Vulnerability-Scanner

📌 Web Vulnerability Scanner

Language: Python - Size: 17.2 MB - Last synced at: about 20 hours ago - Pushed at: about 20 hours ago - Stars: 2 - Forks: 0

SecAegis/SecAutoBan

恶意IP全自动封禁平台。支持收集如下安全设备告警:长亭WAF社区版(SafeLine)、微步蜜罐HFish、奇安信天眼、奇安信椒图、绿盟WAF、科来网络安全分析审计系统。支持如下设备联动封禁:RouterOS、OPNsense、CheckPoint、旁路阻断(无需设备配合)、奇安信防火墙

Language: Python - Size: 44.1 MB - Last synced at: about 23 hours ago - Pushed at: 1 day ago - Stars: 179 - Forks: 36

butlerem/cyber-study-platform

Interactive platform for learning cybersecurity through hands-on web security challenges like SQLi, XSS, and CSRF.

Language: TypeScript - Size: 8.09 MB - Last synced at: 1 day ago - Pushed at: 1 day ago - Stars: 0 - Forks: 0

UltrawStudZ/SSS_Qualifiers_v12

The write-ups for the preselection exam of the SSS Security Summer School at UNSTB, Romania, 2025 Edition.

Language: C - Size: 14.6 KB - Last synced at: 1 day ago - Pushed at: 1 day ago - Stars: 0 - Forks: 0

saxxybwai/Basic-Web-Vulnerability-Scanner

A Python-based web vulnerability scanner that identifies common security flaws like SQL Injection and XSS. Ideal for learning web application security and ethical hacking practices.

Language: Python - Size: 6.84 KB - Last synced at: 2 days ago - Pushed at: 2 days ago - Stars: 0 - Forks: 0

cleytonZinn/SQLMap-GUI-Web-Vulnerability-Scanner

GUI-based SQLMap tool for web vulnerability scanning with risk level and log saving support

Size: 5.86 KB - Last synced at: 2 days ago - Pushed at: 2 days ago - Stars: 0 - Forks: 0

Ge0rg3/requests-ip-rotator

A Python library to utilize AWS API Gateway's large IP pool as a proxy to generate pseudo-infinite IPs for web scraping and brute forcing.

Language: Python - Size: 50.8 KB - Last synced at: 2 days ago - Pushed at: 17 days ago - Stars: 1,544 - Forks: 162

BONDO2K-cloud/acupoftea

[PHP] ACUPOFTEA WEBSHELL BYPASS SERV 403 404

Language: PHP - Size: 19.5 KB - Last synced at: 2 days ago - Pushed at: 2 days ago - Stars: 1 - Forks: 1

StanLeyJ03/mcp-for-security

MCP for Security: A collection of Model Context Protocol servers for popular security tools like SQLMap, FFUF, NMAP, Masscan and more. Integrate security testing and penetration testing into AI workflows.

Language: JavaScript - Size: 45.9 KB - Last synced at: 3 days ago - Pushed at: 3 days ago - Stars: 4 - Forks: 0

githubokkk/Byakugan-Finder

**Byakugan Finder** 👁️ is a fast and efficient **admin panel scanner** that helps penetration testers discover hidden login pages on websites. Inspired by the **Byakugan** from *Naruto*, it uses **multithreading** for speed, supports **custom wordlists**, and saves results automatically. ⚡ Perfect for ethical hacking and security testing! 🚀

Language: Python - Size: 8.79 KB - Last synced at: 3 days ago - Pushed at: 3 days ago - Stars: 1 - Forks: 0

blst-security/cherrybomb

Stop half-done APIs! Cherrybomb is a CLI tool that helps you avoid undefined user behaviour by auditing your API specifications, validating them and running API security tests.

Language: Rust - Size: 2.63 MB - Last synced at: about 18 hours ago - Pushed at: 7 months ago - Stars: 1,181 - Forks: 83

lmkbook/VulnModernWeb

Plataforma educativa para practicar explotación de vulnerabilidades web modernas con APIs y microservicios.

Language: PHP - Size: 370 KB - Last synced at: 4 days ago - Pushed at: 4 days ago - Stars: 0 - Forks: 0

lirantal/awesome-nodejs-security

Awesome Node.js Security resources

Size: 560 KB - Last synced at: 4 days ago - Pushed at: 4 days ago - Stars: 2,810 - Forks: 250

codeesura/Anti-phishing-extension

Safeguard your online experience with Anti-Phishing Extension! This extension is meticulously developed to protect users from potential phishing attacks by actively scanning the websites visited in real-time. It employs an updated blacklist to cross-check each website and promptly alerts users if a potential threat is detected, enhancing

Language: JavaScript - Size: 15.8 MB - Last synced at: 4 days ago - Pushed at: 4 days ago - Stars: 32 - Forks: 13

chaitin/SafeLine

SafeLine is a self-hosted WAF(Web Application Firewall) / reverse proxy to protect your web apps from attacks and exploits.

Language: Go - Size: 76.4 MB - Last synced at: 4 days ago - Pushed at: 17 days ago - Stars: 16,274 - Forks: 981

infoslack/awesome-web-hacking

A list of web application security

Size: 160 KB - Last synced at: 4 days ago - Pushed at: 5 months ago - Stars: 6,183 - Forks: 1,243

Sh1v4nk/Passgen-React

A user-friendly React app for generating secure, customizable passwords using robust cryptographic methods—not just basic random functions. Perfect for anyone serious about online security!

Language: JavaScript - Size: 122 KB - Last synced at: 4 days ago - Pushed at: 4 days ago - Stars: 0 - Forks: 0

eldeeb101/wayurls

CLI tool for fetching URLs from Wayback Machine, Common Crawl, and VirusTotal. bugbounty, bugcrowd, crawler, cyber-security, cybersecurity, golang-tools, hackerone, infosec, intigriti, osint, osint-tool, projectdiscovery, tomnomnom, tools, virustotal, wayback-machine, web, web-security

Language: Go - Size: 6.84 KB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 0 - Forks: 0

marthijn/Sidio.Web.Security

Helper functions and middleware to secure ASP.NET Core applications

Language: C# - Size: 1.23 MB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 3 - Forks: 0

boogabear86uw/Basic-Web-Vulnerability-Scanner-zo

A Python-based web vulnerability scanner that identifies common security flaws like SQL Injection and XSS. Ideal for learning web application security and ethical hacking practices.

Size: 0 Bytes - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 0 - Forks: 0

dckc/awesome-ocap

Awesome Object Capabilities and Capability Security

Size: 331 KB - Last synced at: about 23 hours ago - Pushed at: 4 months ago - Stars: 362 - Forks: 24

hakyet31/Tor-Browser-2025

Tor Browser for secure and anonymous browsing. Protect your online privacy and access the internet freely. 🕵️♂️🌐

Size: 7.81 KB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 0 - Forks: 0

haydenmellor/Tor-Browser-2025

Tor Browser for secure and anonymous browsing. Protect your online privacy and access the internet freely. 🕵️♂️🌐

Size: 1.95 KB - Last synced at: 5 days ago - Pushed at: 6 days ago - Stars: 0 - Forks: 0

ggilangffirmansyahh/Caesar-Cipher-Decryption

A C program to decrypt Caesar cipher-encrypted messages using frequency analysis. Reads input files, decrypts messages automatically, and outputs the results.

Size: 1000 Bytes - Last synced at: 5 days ago - Pushed at: 6 days ago - Stars: 0 - Forks: 0

psambetty/Tor-Browser-2025

Tor Browser for secure and anonymous browsing. Protect your online privacy and access the internet freely. 🕵️♂️🌐

Size: 8.79 KB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 0 - Forks: 0

alokmenghrajani/alokmenghrajani.github.com

Alok Menghrajani's Blog

Language: HTML - Size: 276 MB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 68 - Forks: 17

MobSF/Mobile-Security-Framework-MobSF

Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.

Language: JavaScript - Size: 1.42 GB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 18,530 - Forks: 3,358

Lookyloo/lookyloo

Lookyloo is a web interface that allows users to capture a website page and then display a tree of domains that call each other.

Language: Python - Size: 7.45 MB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 711 - Forks: 86

tempesta-tech/tempesta

All-in-one solution for high performance web content delivery and advanced protection against DDoS and web attacks

Language: C - Size: 21.1 MB - Last synced at: 5 days ago - Pushed at: 5 days ago - Stars: 648 - Forks: 106

hueristiq/xurlfind3r

A command-line utility designed to discover URLs for a given domain in a simple, efficient way. It works by gathering information from a variety of passive sources, meaning it doesn't interact directly with the target but instead gathers data that is already publicly available.

Language: Go - Size: 389 KB - Last synced at: 4 days ago - Pushed at: 4 days ago - Stars: 601 - Forks: 71

bunkerity/bunkerweb

🛡️ Open-source and next-generation Web Application Firewall (WAF)

Language: Python - Size: 563 MB - Last synced at: 6 days ago - Pushed at: 6 days ago - Stars: 7,921 - Forks: 455

AlBovo/Olicyber-WriteUps

This repository contains all the source code for the various writeups I have written over time of all the Olicyber editions I have participated in.

Language: Python - Size: 64.6 MB - Last synced at: 6 days ago - Pushed at: 7 days ago - Stars: 26 - Forks: 1

Terminiator229/WebSecurityCheatSheet

Reliable, safe and up-to-date guide to secure your web JavaScript projects

Size: 10.7 KB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 0 - Forks: 0

vavkamil/awesome-bugbounty-tools

A curated list of various bug bounty tools

Size: 81.1 KB - Last synced at: 6 days ago - Pushed at: 4 months ago - Stars: 4,906 - Forks: 790

xanhacks/OffensiveWeb

Offensive Web is a documentation website about security research, difficult concepts, bypass and new exploitation techniques.

Language: HTML - Size: 750 KB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 25 - Forks: 3

911Abaddon/SecurityHeaderX

Instant web security analysis: detect vulnerabilities in HTTP headers, TLS, and CORS with a single scan

Language: JavaScript - Size: 80.1 KB - Last synced at: 4 days ago - Pushed at: 7 days ago - Stars: 1 - Forks: 0

cyproxio/mcp-for-security

MCP for Security: A collection of Model Context Protocol servers for popular security tools like SQLMap, FFUF, NMAP, Masscan and more. Integrate security testing and penetration testing into AI workflows.

Language: TypeScript - Size: 157 KB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 43 - Forks: 8

nahamsec/Resources-for-Beginner-Bug-Bounty-Hunters

A list of resources for those interested in getting started in bug bounties

Size: 145 KB - Last synced at: 6 days ago - Pushed at: 10 months ago - Stars: 11,228 - Forks: 1,976

edoardottt/pphack

The Most Advanced Client-Side Prototype Pollution Scanner

Language: Go - Size: 546 KB - Last synced at: 1 day ago - Pushed at: 1 day ago - Stars: 221 - Forks: 19

n03stalg1a/SecuriScan

SecuriScan is a Python tool that scans websites for security vulnerabilities, including outdated libraries, exposed admin panels, missing security headers, and advanced threats like CSRF and XSS. It helps detect common vulnerabilities, ensuring your website is secure and protected against attacks.

Language: Python - Size: 0 Bytes - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 0 - Forks: 0

JasonLovesDoggo/caddy-defender

Caddy module to block or manipulate requests originating from AIs or cloud services trying to train on your websites

Language: Go - Size: 1.06 MB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 370 - Forks: 10

trailofbits/twa

A tiny web auditor with strong opinions.

Language: Shell - Size: 181 KB - Last synced at: 6 days ago - Pushed at: 4 months ago - Stars: 588 - Forks: 53

YangYang-Research/whale-sentinel

The Whale Sentinel - A security solution protect for web app, mobile app and more

Size: 2.16 MB - Last synced at: 8 days ago - Pushed at: 8 days ago - Stars: 0 - Forks: 0

incredibleindishell/SSRF_Vulnerable_Lab

This Lab contain the sample codes which are vulnerable to Server-Side Request Forgery attack

Language: PHP - Size: 45.9 MB - Last synced at: 6 days ago - Pushed at: over 1 year ago - Stars: 719 - Forks: 194

codelassey/Cybersecurity-Projects

This repository showcases my hands-on journey into cybersecurity through a collection of projects. I am continually expanding this repository as I grow in my path toward becoming a professional Cybersecurity Analyst.

Size: 2.84 MB - Last synced at: 9 days ago - Pushed at: 9 days ago - Stars: 0 - Forks: 0

jub0bs/cors

perhaps the best CORS middleware library for Go

Language: Go - Size: 476 KB - Last synced at: 1 day ago - Pushed at: 1 day ago - Stars: 64 - Forks: 1

L0WK3Y-IAAN/PortSwigger-Academy-Tracker

This script dynamically tracks your PortSwigger Academy progress and generates a markdown table for you.

Language: Python - Size: 27.3 KB - Last synced at: 6 days ago - Pushed at: 10 days ago - Stars: 0 - Forks: 1

yuvadm/viewstate

ASP.NET View State Decoder

Language: Python - Size: 145 KB - Last synced at: 10 days ago - Pushed at: 10 days ago - Stars: 105 - Forks: 15

TypeError/secure

Lightweight modern Python library to add security headers (CSP, HSTS, etc.) to Django, Flask, FastAPI, and more. Secure defaults or fully customizable.

Language: Python - Size: 293 KB - Last synced at: 4 days ago - Pushed at: 7 months ago - Stars: 933 - Forks: 29

soos-io/soos-dast

SOOS DAST Scanning - Register for a Free Trial at https://app.soos.io/register

Language: Python - Size: 464 KB - Last synced at: 10 days ago - Pushed at: 10 days ago - Stars: 6 - Forks: 2

aadyamo/uipath-vulnerability-assessment-bot

UiPath Vulnerability Assessment Bot

Size: 37.1 KB - Last synced at: 10 days ago - Pushed at: 10 days ago - Stars: 0 - Forks: 0

reallywasi/ThreatHawk-Vulnerability-Assesment-Scanner

Threat Hawk is an open-source vulnerability scanner that identifies security flaws in web applications and networks. It integrates OWASP ZAP and Nmap, with custom modules for advanced scanning. Built with Node.js and Flask, it offers scalable, efficient vulnerability detection.

Language: HTML - Size: 0 Bytes - Last synced at: 10 days ago - Pushed at: 10 days ago - Stars: 0 - Forks: 0

CoCreate-app/CoCreate-server

A dynamic SSL certificate management and generation tool for proxies like NGINX, with a fallback to Node.js SSL termination. It seamlessly integrates HTTP, HTTPS, and ACME protocols to ensure secure, encrypted connections.

Language: JavaScript - Size: 45.9 KB - Last synced at: 10 days ago - Pushed at: 10 days ago - Stars: 0 - Forks: 0

Samuelson777/Basic-Web-Vulnerability-Scanner

A Python-based web vulnerability scanner that identifies common security flaws like SQL Injection and XSS. Ideal for learning web application security and ethical hacking practices.

Language: Python - Size: 4.88 KB - Last synced at: 11 days ago - Pushed at: 11 days ago - Stars: 0 - Forks: 0

R0mb0/Timed_password_generator_classic_asp

Class to retrieve timed generate passwords.

Language: Classic ASP - Size: 27.3 KB - Last synced at: 7 days ago - Pushed at: 11 days ago - Stars: 1 - Forks: 0

R0mb0/Url_crypted_parameters_classic_asp

A class for passing and retrieving parameters from URL

Language: Classic ASP - Size: 51.8 KB - Last synced at: 3 days ago - Pushed at: 11 days ago - Stars: 1 - Forks: 0

pipela/web-security-htb-writeups

Writeups from HTB Academy Labs with Pentester Mindset My Web Security Journey through HTB Academy Hands-on Web Hacking Labs (HTB) | Portfolio for Pentest Career

Size: 37.1 KB - Last synced at: 11 days ago - Pushed at: 11 days ago - Stars: 0 - Forks: 0

cybersecplayground/bugbounty-Tips-and-Tricks

A curated collection of bug bounty tips, tricks, payloads, and bypass techniques

Language: Shell - Size: 63.5 KB - Last synced at: 11 days ago - Pushed at: 11 days ago - Stars: 0 - Forks: 0

fabriziosalmi/caddy-waf

Caddy WAF (Regex Rules, IP and DNS filtering, Rate Limiting, GeoIP, Tor, Anomaly Detection)

Language: Go - Size: 8.21 MB - Last synced at: 11 days ago - Pushed at: 11 days ago - Stars: 497 - Forks: 16

4xyy/AI-Vuln-Scanner

An AI-powered web application vulnerability scanner that automates the detection of common security flaws and provides AI-driven insights for impact assessment and remediation suggestions.

Language: Python - Size: 20.5 KB - Last synced at: 11 days ago - Pushed at: 8 months ago - Stars: 16 - Forks: 4

ExploitWorks/DesyncDiver

A tool for detecting HTTP Request Smuggling vulnerabilities

Language: Shell - Size: 31.3 KB - Last synced at: 12 days ago - Pushed at: 12 days ago - Stars: 17 - Forks: 0

xu-xiang/awesome-security-vul-llm

本项目通过大模型联动爬虫,检索Github上所有存有有价值漏洞信息与漏洞POC或规则信息的项目,并自动识别项目的目录结构、Readme信息后进行总结分析并分类,所汇总的项目可以帮助安全行业从业者收集漏洞信息、POC信息、规则等。

Size: 31.3 KB - Last synced at: 23 minutes ago - Pushed at: over 1 year ago - Stars: 126 - Forks: 19

Kode-n-Rolla/pentesting_time

Offensive security cheat sheet library

Language: Python - Size: 656 KB - Last synced at: 13 days ago - Pushed at: 13 days ago - Stars: 5 - Forks: 1

payloadbox/directory-payload-list

🎯 Directory Payload List

Size: 2.89 MB - Last synced at: 2 days ago - Pushed at: 10 months ago - Stars: 167 - Forks: 77

FluffAlmighty/anti-scraping-defense-iis

An IIS-native implementation of the AI Scraping Defense Stack, utilizing ASP.NET Core middleware and Python backend services (FastAPI/Flask) to detect, tarpit, and block malicious bots and AI scrapers in a Windows environment. Features include Redis-based blocklisting, heuristic analysis, ML model integration, and configurable alerting.

Language: Python - Size: 1.43 MB - Last synced at: 14 days ago - Pushed at: 14 days ago - Stars: 0 - Forks: 0

turbo/openftp4

A list of all FTP servers in IPv4 that allow anonymous logins.

Size: 27.6 MB - Last synced at: 14 days ago - Pushed at: 14 days ago - Stars: 653 - Forks: 95

AtharvKasar04/stored-xss-demo-CS-MiniProject

Simple demo project to demonstrate Stored Cross-Site Scripting (XSS) vulnerability using unsanitized blog comments. Includes both vulnerable and fixed versions.

Language: TypeScript - Size: 17.6 KB - Last synced at: 14 days ago - Pushed at: 14 days ago - Stars: 0 - Forks: 0

hueristiq/xcrawl3r

A command-line utility designed to recursively spider webpages for URLs. It works by actively traversing websites - following links embedded in webpages, parsing resources like sitemaps and robots.txt files, and even processing local files - to uncover every URL.

Language: Go - Size: 183 KB - Last synced at: 4 days ago - Pushed at: 4 days ago - Stars: 98 - Forks: 7

CypherNova1337/Auto-IDOR

An interactive bash script for detecting IDOR vulnerabilities. Automates the discovery of access control issues in web applications, enhancing the efficiency of bug bounty hunting.

Language: Shell - Size: 19.5 KB - Last synced at: 3 days ago - Pushed at: about 1 month ago - Stars: 9 - Forks: 0

SecAegis/SecReport

ChatGPT加持的,多人在线协同信息安全报告编写平台。目前支持的报告类型:渗透测试报告,APP隐私合规报告。

Language: Python - Size: 411 KB - Last synced at: 15 days ago - Pushed at: 15 days ago - Stars: 174 - Forks: 20

HyggeHalcyon/CTFs

CTFs solve scripts

Language: Python - Size: 365 MB - Last synced at: 15 days ago - Pushed at: 15 days ago - Stars: 15 - Forks: 0

athack-ctf/AtHackCTF-2025-Challenges

All challenges from AtHackCTF 2025.

Size: 2.45 MB - Last synced at: 15 days ago - Pushed at: 15 days ago - Stars: 9 - Forks: 0

Con2010/Bug-Bounty-Hunter

A highly automated and modular bug bounty reconnaissance toolkit integrating over 15 industry-standard tools for streamlined subdomain enumeration, vulnerability detection, and OSINT gathering. Designed for efficiency, scalability, and precision in real-world security assessments.

Language: Python - Size: 49.8 KB - Last synced at: 16 days ago - Pushed at: 16 days ago - Stars: 0 - Forks: 0

SoheilKhodayari/DOMClobbering

DOM Clobbering Wiki, Browser Testing, and Payload Generation

Language: JavaScript - Size: 14.6 MB - Last synced at: 16 days ago - Pushed at: 16 days ago - Stars: 49 - Forks: 5

0dayInc/pwn

PWN is an open security automation framework that aims to stand on the shoulders of security giants, promoting trust and innovation.

Language: Ruby - Size: 8.54 MB - Last synced at: 11 days ago - Pushed at: 17 days ago - Stars: 50 - Forks: 4

ibrahimsql/aether

🛡️ Aether: Revolutionary XSS toolkit combining scanning, smart WAF bypasses, and advanced payload generation. Perfect for modern pentesting and bug bounty hunting.

Language: C# - Size: 198 KB - Last synced at: 18 days ago - Pushed at: 18 days ago - Stars: 9 - Forks: 1

7underlines/sw-secure-deploy

Security configs and deployment tips for a secure Shopware 6 setup.

Size: 35.2 KB - Last synced at: 3 days ago - Pushed at: 18 days ago - Stars: 2 - Forks: 0

seguinleo/WebSecurityCheatSheet

Reliable, safe and up-to-date guide to secure your web JavaScript projects

Size: 13.7 KB - Last synced at: 18 days ago - Pushed at: 18 days ago - Stars: 0 - Forks: 0

gh0st359/xserum

XSerum is a powerful web attack payload generator designed for red teamers, ethical hackers, and researchers. It supports a wide range of attack types including XSS, CSRF, HTML Injection, CSP Bypass, and more — with advanced obfuscation techniques and customizable output formats.

Language: Python - Size: 20.5 KB - Last synced at: 15 days ago - Pushed at: 24 days ago - Stars: 11 - Forks: 4

SusmoyNath/CyberSecurity-Phishing

🎣 A phishing simulation project built with Node.js (no PHP) and PHP-based versions. Demonstrates how phishing attacks work by mimicking login pages to capture credentials – for educational and ethical hacking use only.

Language: EJS - Size: 900 KB - Last synced at: 14 days ago - Pushed at: 20 days ago - Stars: 1 - Forks: 0

SusmoyNath/CyberSecurity-Server_Side_Template_Injection

💥 ServerSideTemplateInjection (SSTI) Demo with Flask A simple Flask app to demonstrate Server-Side Template Injection vulnerabilities — useful for learning, testing, and understanding how SSTI works and how to avoid it.

Language: Python - Size: 3.01 MB - Last synced at: 17 days ago - Pushed at: 20 days ago - Stars: 2 - Forks: 0

Yavuzlar/VulnLab

Language: CSS - Size: 16.7 MB - Last synced at: 19 days ago - Pushed at: 3 months ago - Stars: 426 - Forks: 145

mgiannopoulos24/CTF-Challenges

Writeups for CTF Challenges.

Language: Python - Size: 146 KB - Last synced at: 19 days ago - Pushed at: 20 days ago - Stars: 2 - Forks: 1

PascalCTF/PascalCTF-Beginners-2025 📦

This repository contains all the sourcecodes and writeups of the 2025 edition of the PascalCTF.

Language: CSS - Size: 9.13 MB - Last synced at: 20 days ago - Pushed at: 20 days ago - Stars: 8 - Forks: 0

KajanM/DirBuster

DirBuster is a multi threaded java application designed to brute force directories and files names on web/application servers.

Language: Java - Size: 2.25 MB - Last synced at: 12 days ago - Pushed at: about 1 year ago - Stars: 139 - Forks: 35

ahossu/SSS_Qualifiers_v12

The write-ups for the preselection exam of the SSS Security Summer School at UNSTB, Romania, 2025 Edition.

Language: C - Size: 17.6 KB - Last synced at: 16 days ago - Pushed at: 22 days ago - Stars: 0 - Forks: 0

Nikol2004/TripleA-Website

The official website of Ambassadors Aligned (Triple A) – a student-led global association. Built with Next.js, Tailwind, and TypeScript.

Language: TypeScript - Size: 2.97 MB - Last synced at: 22 days ago - Pushed at: 22 days ago - Stars: 0 - Forks: 0

S4mL3h0/Web-Header-Pentest-Tool

Size: 6.84 KB - Last synced at: 22 days ago - Pushed at: 22 days ago - Stars: 1 - Forks: 0

Lissy93/domain-locker

🌐 The all-in-one tool, for keeping track of your domain name portfolio. Got domain names? Get Domain Locker!

Language: TypeScript - Size: 26.8 MB - Last synced at: 18 days ago - Pushed at: 22 days ago - Stars: 66 - Forks: 6

S4mL3h0/SQLMap-GUI-Web-Vulnerability-Scanner

GUI-based SQLMap tool for web vulnerability scanning with risk level and log saving support

Size: 2.93 KB - Last synced at: 22 days ago - Pushed at: 22 days ago - Stars: 0 - Forks: 0

pwnpad/pwnpad

🐳 VMs are bloat. Dockerise your VAPT environment

Language: Shell - Size: 3.77 MB - Last synced at: 22 days ago - Pushed at: 22 days ago - Stars: 73 - Forks: 8

Pranieth95/polyglot-generator

A simple Python tool to create polyglot files by combining a valid image (JPEG, PNG, PDF, DOCX, MP4, etc.) with PHP code.

Language: Python - Size: 6.84 KB - Last synced at: 22 days ago - Pushed at: 23 days ago - Stars: 0 - Forks: 0

ivanbg2004/ODH-BricksBuilder-CVE-2024-25600-THM

OD&H's scanner for CVE-2024-25600 vulnerability in the Bricks Builder WordPress plugin. For use in Try Hack Me (THM) environments.

Language: Python - Size: 17.6 KB - Last synced at: 6 days ago - Pushed at: about 1 month ago - Stars: 0 - Forks: 0

telekom-security/explo 📦

Human and machine readable web vulnerability testing format

Language: Python - Size: 199 KB - Last synced at: 23 days ago - Pushed at: over 2 years ago - Stars: 189 - Forks: 45

whxitte/Honeypot

A vulnerable honeypot setup using Flask and SSH to capture and analyze malicious activities. Includes real-time logging and monitoring to study attack patterns and exploit attempts

Language: HTML - Size: 49.8 KB - Last synced at: 5 days ago - Pushed at: 5 months ago - Stars: 9 - Forks: 2

yxdm02/EnhancedBurpGPT

Enhanced BurpGPT 是一个强大的 Burp Suite 插件。通过分析指定的 HTTP 请求和响应,帮助安全测试人员更快速地发现潜在的安全漏洞。

Language: Python - Size: 138 KB - Last synced at: 24 days ago - Pushed at: 24 days ago - Stars: 90 - Forks: 11

Related Keywords
web-security 586 security 146 penetration-testing 99 cybersecurity 93 security-tools 61 hacking 61 ethical-hacking 60 python 58 pentesting 48 network-security 45 javascript 42 xss 42 sql-injection 40 cyber-security 40 bugbounty 39 owasp 32 security-testing 29 web 28 php 28 ctf 26 application-security 26 security-audit 24 vulnerability-assessment 22 automation 22 csrf 21 osint 20 hacktoberfest 20 open-source-security 20 network-scanner 19 python3 19 websecurity 19 brute-force-attack 19 vulnerability 19 password-recovery 18 multi-protocol-support 18 credential-stuffing 18 brutus-aet2 18 password-testing 18 brute-force-tool 18 authentication-tool 18 system-security 18 vulnerability-scanners 18 infosec 18 nodejs 18 docker 17 reverse-engineering 17 burpsuite 17 bug-bounty 17 open-source 16 cryptography 16 reconnaissance 16 vulnerability-scanner 15 privacy 15 scanner 15 hacking-tool 15 hacking-tools 15 devsecops 15 java 15 cloud-security 14 exploit 14 web-hacking 14 offensive-security 14 web-application-security 14 web-security-research 13 chrome-extension 13 ctf-writeups 13 waf 13 pentest 13 fuzzing 13 spring-boot 12 penetration-testing-tools 12 web-development 12 recon 11 api 11 binary-exploitation 11 web-application-firewall 11 css 11 xss-vulnerability 11 golang 11 owasp-top-10 10 red-team 10 machine-learning 10 django 10 html 10 devops 10 vulnerabilities 10 sql 10 wordpress 10 appsec 10 password-cracker 10 exploitation 10 http 10 ctf-challenges 10 internet-security 10 cli 9 ci 9 build-tool 9 react 9 go 9 ai 9