Jsdir. Jsdir is a Burp Suite extension that extracts hidden paths from js files and beautifies it for further reading.
120nuclei-c-templates. Custom nuclei templates
9fuzz4bounty. Awesome wordlists for Bug Bounty Hunting
6Masscan-burp-extension. Python
5jssecrets. Simple automation tool to find sensitive data in JS files
3DomainSleuth. DomainSleuth is a versatile and user-friendly command-line tool for discovering valuable information about target domains and their subdomains, making it a handy addition to any bug bounty hunter's toolkit.
2awesome-exploit-development. A curated list of resources (books, tutorials, courses, tools and vulnerable applications) for learning about Exploit Development
2dirsearch. Web path scanner
1Unforbid. 403/401 Bypass Methods + Bash Automation
1BurpAI. BurpAI revolutionizes web application security testing by bringing artificial intelligence capabilities to Burp Suite. This innovative extension harnesses the power of AI to automate vulnerability detection, provide intelligent analysis, and assist security professionals in identifying complex security issues.
1Sublist3r. Fast subdomains enumeration tool for penetration testers
1gdorks. gdorks is a simple python script that generate a file with google dorks for a specific target for easy copy/paste process
1xss-payload-list. 🎯 Cross Site Scripting ( XSS ) Vulnerability Payload List
1dependconfusion-x. DependConfusion-X Tool is written in Python3 that scans and monitors list of hosts for Dependency Confusion
1Panoptic. Panoptic is an open source penetration testing tool that automates the process of search and retrieval of content for common log and config files through path traversal vulnerabilities.
1hacking-books.
1pentest-tools. Custom pentesting tools
1