Jaipur

me_dheeraj

Elite
@Dheerajmadhukar

There is just one way to do security: TOGETHER.

4-ZERO-3. 403/401 Bypass Methods + Bash Automation + Your Support ;)

1.7k

karma_v2. ⡷⠂𝚔𝚊𝚛𝚖𝚊 𝚟𝟸⠐⢾ is a Passive Open Source Intelligence (OSINT) Automated Reconnaissance (framework)

1k

back-me-up. This tool will check for Sensitive Data Leakage with some useful patterns/RegEx. The patterns are mostly targeted on waybackdata and filter everything accordingly.

229

Lilly. Tool to find the real IP behind CDNs/WAFs like cloudflare using passive recon by retrieving the favicon hash. For the same hash value, all the possible IPs, PORTs and SSL/TLS Certs are searched to validate the target in-scope.

184

notes. Bug Bounty & Other Stuff

59

karma_v1. KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Ports.

58

subzzZ. SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.

38

Prototype-Pollution-Lab_me_dheeraj. Prototype-Pollution-Lab to chain the vulnerabilities between multiple accounts.

13

Dheerajmadhukar. Director | Trainer at CDAC Under The Ministry of Electronics and Information | Corporate Trainer at Indian Air Force Under the Ministry of Defense ... Jai Hind

12

BB-Hunt-A-Day. A simple mind map with some automation/bash commands/tools execution. I hope it may help you all :)

7

GitApp. GITAPP : Tool will display all data URLs from GitHub including XML, JSON, Java, Text, Kotlin, Ruby, Markdown, CSV, Python, PHP, GO, YAML, Elixir, C++, JavaScript, HTML & many more . . .

7

scant3r. ScanT3r - Module based Bug Bounty Automation Tool

6

oh-my-dorks. HTML

5

Resources-for-Beginner-Bug-Bounty-Hunters. A list of resources for those interested in getting started in bug bounties

5

Insecure-Comparison-Lab_me_dheeraj. Insecure Comparison in JavaScript. CTF written in nodejs Express module.

5

Sudomy. Sudomy is a subdomain enumeration tool to collect subdomains and analyzing domains performing automated reconnaissance (recon) for bug hunting / pentesting

4

community. For US

3

reconftw. ReconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities

3

Funny_Me_Dheeraj. trip

2

GitOps-CTF. Master Git through Capture-the-Flag challenges

2

pr2tik1. My GitHub profile-README (Don't Just Fork, star too 🥺)

2

fdns. To resolve IP/Domain to check the correct resolver.

2

Amass. In-depth Attack Surface Mapping and Asset Discovery

2

GraphQLmap. GraphQLmap is a scripting engine to interact with a graphql endpoint for pentesting purposes.

1

cariddi. Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more...

1

learn365. This repo is about @harshbothra_ 365 days of learning Tweet & Mindmap collection

1

asn. ASN / RPKI validity / BGP stats / IPv4v6 / Prefix / URL / ASPath / Organization / IP reputation and geolocation lookup tool / Traceroute server

1

lazyscripts. bash scripts to automate server administration tasks

1

PrototypePollution-Lab. Prototype Pollution Lab

1

submax. All in one subdomain Enumeration tool

1

davtest. A simple CLI tool to check WebDAV vulnerability

1

BugBountyScanner. A Bash script and Docker image for Bug Bounty reconnaissance. Intended for headless use.

1

github-dorks. Find leaked secrets via github search

1
33
Apply