Topic: "webpentest"
thewhiteh4t/FinalRecon
All In One Web Recon
Language: Python - Size: 354 KB - Last synced at: 12 days ago - Pushed at: 6 months ago - Stars: 2,407 - Forks: 442

AngixBlack/Corscan
Advanced CORS Header Checker Tool with Vulnerability Detection and Bypass Attempts
Language: Python - Size: 640 KB - Last synced at: 7 months ago - Pushed at: 7 months ago - Stars: 52 - Forks: 12

J4FSec/HaccTheHub
Open source self-hosted cyber security learning platform
Language: TypeScript - Size: 2.19 MB - Last synced at: over 1 year ago - Pushed at: over 2 years ago - Stars: 50 - Forks: 4

mamgad/DVBLab
This course uses a deliberately vulnerable banking application to demonstrate common security vulnerabilities, their impact, and how to fix them. The application is built with Flask (backend) and React (frontend).
Language: JavaScript - Size: 298 KB - Last synced at: 1 day ago - Pushed at: 1 day ago - Stars: 48 - Forks: 4

HalilDeniz/PathFinder
Path Finder
Language: Python - Size: 344 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 27 - Forks: 6

txuswashere/pentesting
CyberSec Resources: FRAMEWORKS & STANDARDS; Pentesting Audits & Hacking; PURPLE TEAMING, AD, API, web, clouds, CTF, OSINT, Pentest tools, Network Security, Privilege escalation, Exploiting, Reversing, Secure Code, Bug Bounty, ...
Size: 36.4 MB - Last synced at: 30 days ago - Pushed at: about 2 years ago - Stars: 26 - Forks: 3

Anof-cyber/pentest-recon
Web application pentesting recon
Language: Shell - Size: 49.8 KB - Last synced at: 17 days ago - Pushed at: over 4 years ago - Stars: 23 - Forks: 6

cyberstruggle/whitepass
Whitepass Bypass Whitelist/Ratelimit Implementations in Web Applications/APIs
Language: Python - Size: 10.7 KB - Last synced at: over 1 year ago - Pushed at: about 4 years ago - Stars: 22 - Forks: 2

TorhamDev/Death-engine
A powerful recon tool
Language: Python - Size: 271 KB - Last synced at: 12 days ago - Pushed at: almost 3 years ago - Stars: 11 - Forks: 2

Serhatcck/hidden_fuzzer
Hidden Fuzzer is a URL fuzzing tool designed to uncover hidden paths and resources on web applications. It features multithreading, customizable HTTP headers, and request parameters for optimized performance.
Language: Go - Size: 9.49 MB - Last synced at: 4 months ago - Pushed at: 4 months ago - Stars: 7 - Forks: 1

defensahacker/viewstate-decoder
Small tool to decode ASP.NET __VIEWSTATE variable when doing webpentests
Language: Python - Size: 35.2 KB - Last synced at: over 1 year ago - Pushed at: about 4 years ago - Stars: 7 - Forks: 5

InfoSecWarrior/Subdomain-Takeovers
This repository discusses the subdomain takeover vulnerability and lists of services which are vulnerable to it. It also provides information, methodology and resources to perform subdomain takeover attacks.
Language: HTML - Size: 17.6 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 6 - Forks: 7

Fadavvi/BurpPro-FastCrawler
The simplest way to integrate your subdomain enum outputs with Burp Pro (Fast Crawler)
Language: Python - Size: 3.91 KB - Last synced at: about 2 years ago - Pushed at: about 3 years ago - Stars: 6 - Forks: 4

krishealty/knockknock
A Simple Tool to gather information from any website, domain, sub-domain, DNS, links by enumeration with simple commands.
Language: Go - Size: 1.2 MB - Last synced at: 3 days ago - Pushed at: 11 months ago - Stars: 5 - Forks: 1

m3z0diac/spaceBox
a simple vulnerable web applications, gain access then capture the flag.
Language: PHP - Size: 846 KB - Last synced at: 3 months ago - Pushed at: over 3 years ago - Stars: 4 - Forks: 0

austinsonger/sitemapsandrobotsaroundtheweb
Sitemaps and Robots.txt for websites around the world.
Size: 137 KB - Last synced at: about 1 month ago - Pushed at: over 4 years ago - Stars: 4 - Forks: 0

MedhatHassan/CyberTalents
The CyberTalents repository is a collection of solutions and write-ups for challenges sourced from the CyberTalents platform. Organized topic, this repository serves as a resource for cybersecurity enthusiasts seeking to enhance their skills and understanding of security concepts.
Language: Python - Size: 33.1 MB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 3 - Forks: 2

thisisrootbug/JWT_SECRET
a simple python script to brute force JSON WEB TOCKEN (JWT) secret using a dictionary
Language: Python - Size: 15.6 KB - Last synced at: about 1 year ago - Pushed at: over 2 years ago - Stars: 3 - Forks: 0

defensahacker/URLSUCKER
Sucks all embedded URLs from a given URI or file. Ideal to parse URLs from CSS or JavaScript (such as API calls, webservices, ;)
Language: Perl - Size: 13.7 KB - Last synced at: over 1 year ago - Pushed at: over 3 years ago - Stars: 2 - Forks: 0

reflx-dot/API-Pentesting-Tools
API Pentesting Tools are specialized security tools used to test and analyze the security of Application Programming Interfaces (APIs).
Size: 25.4 KB - Last synced at: 3 days ago - Pushed at: 3 days ago - Stars: 1 - Forks: 1

SaranCoder0/Web-Pentest-Notebook
A collaborative repository for web pentesting notes and tool commands. Contribute your knowledge to build a comprehensive resource for Web pentester, Bug bounty hunter, Ethical hacker and security professionals.
Language: Python - Size: 9.61 MB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 1 - Forks: 0

AngixBlack/gitools
shell script that automates the installation of essential bug bounty and web pentesting tools. It supports Linux and macOS
Language: Shell - Size: 133 KB - Last synced at: 7 months ago - Pushed at: 8 months ago - Stars: 1 - Forks: 1

Pedram-G/Cybersecurity-Basics
Self-Study About Cybersecurity (Summary of My Learning )
Language: Python - Size: 26.2 MB - Last synced at: almost 2 years ago - Pushed at: about 2 years ago - Stars: 1 - Forks: 0

anil-yelken/burp-extensions
burp extensions
Language: Python - Size: 16.6 KB - Last synced at: about 1 year ago - Pushed at: over 2 years ago - Stars: 1 - Forks: 4

anil-yelken/anil-yelken
Config files for my GitHub profile.
Size: 1000 Bytes - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 1 - Forks: 0

xpl0ited1/postMessageFinderBurpSuite
This extension allows you to detect implementations of postMessage function, addEventListener("message",function) event handler and onMessage function.
Language: Python - Size: 174 KB - Last synced at: 12 months ago - Pushed at: about 3 years ago - Stars: 1 - Forks: 0

hansengianto/webpentestingtool
My Private Website Pentesting Tool
Size: 895 KB - Last synced at: over 1 year ago - Pushed at: over 3 years ago - Stars: 1 - Forks: 0

HarshilPatel007/webappsec
web application penetration testing and security notes.
Language: Python - Size: 63.5 KB - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 1 - Forks: 0

Abdelrahman-Abdelsamiee/cli-hackbox
🔧 A simple but powerful CLI-based toolkit for basic reconnaissance — includes subdomain discovery, header scanning, port scanning, etc.
Language: Python - Size: 167 KB - Last synced at: 14 days ago - Pushed at: 14 days ago - Stars: 0 - Forks: 0

stashEmal/cli-hackbox
🔧 A simple but powerful CLI-based toolkit for basic reconnaissance — includes subdomain discovery, header scanning, port scanning, etc.
Language: Python - Size: 169 KB - Last synced at: 14 days ago - Pushed at: 17 days ago - Stars: 0 - Forks: 0

xnoncywer/adminfinder
Admin Finder Tool is a Python-based tool designed to help security professionals, penetration testers, and website administrators identify potentially sensitive admin areas on a website. The tool works by testing a list of common admin URL paths and checking if any of these return a 200 HTTP status code, indicating that they exist.
Language: Python - Size: 21.5 KB - Last synced at: 5 months ago - Pushed at: 5 months ago - Stars: 0 - Forks: 0

shingareom/PentestingTools
This repository contains a collection of tools designed for automating penetration testing, while also being valuable for manual testing. Leveraging these tools can enhance both the efficiency and effectiveness of your security assessments.
Size: 8.79 KB - Last synced at: about 1 month ago - Pushed at: 6 months ago - Stars: 0 - Forks: 1

LSD00/webfuzz
A very fast webfuzzer, support encoders, working with raw requests
Language: Go - Size: 30.3 KB - Last synced at: 8 months ago - Pushed at: 9 months ago - Stars: 0 - Forks: 0

sanogotech/Vulnerable-Flask-App Fork of anil-yelken/Vulnerable-Flask-App
Erlik 2 - Vulnerable-Flask-App
Language: Python - Size: 203 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

mentesan/webtaz
Web pentest kickstarter
Language: Shell - Size: 6.29 MB - Last synced at: almost 2 years ago - Pushed at: almost 2 years ago - Stars: 0 - Forks: 0

raylan-oliveira/jsonAnalytic
jsonAnalytic - List all keys & all values in json
Language: Python - Size: 24.4 KB - Last synced at: about 2 years ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0
