jsleak. jsleak is a tool to find secret , paths or links in the source code during the recon.
593403-bypass. 403-bypass tool to bypass 403 responses.
132ollama-ai-analyzer. Ollama AI Analyzer runs directly on your local computer, using Ollama's AI models to analyze your HTTP requests and responses. This means you get fast insights right where you work, with the added benefit of keeping your data private.
33Bug-Bounty-Tips. I will share my bug bounty tips here
32sonarbyte. sonarbyte is a simple and fast subdomain scanner written in go to extract subdomain from Rapid7's DNS Database using omnisint's api.
27gup. gup aka Get All Urls parameters to create wordlists for brute forcing parameters.
18research. The purpose of this repo is to share my research
14log4j-detect. Just simple log4j scanner
12dnsc. dnsc is a tool to lookup IP address of a single domain or multiple domains.
5bcrawl. Go
4swagger-extractor. Go
2Java-Source-Code-Scanner. Python
2LinkFinder. Just modification version of this tool by fixing some errors https://github.com/GerbenJavado/LinkFinder
2simpurl. Simpurl is a tool that reads a list of URLs with multiple parameters from standard input and prints them out with each parameter.
2Android-Pentest. Java
1Open-Redirection-Scanner. a python tool used to scan for Open redirection vulnerability
1wwwolf-php-webshell. WhiteWinterWolf's PHP web shell
1Capture-The-Flag. Python
1ourl. Go
1Web-Development. This is the repo about web development
1Learning-Programming. Java
1SecLists. SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
1