Skip to content
View 0xxen's full-sized avatar

Block or report 0xxen

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Beta Lists are currently in beta. Share feedback and report bugs.
Showing results

bypass-url-parser

Python 1,003 104 Updated Sep 21, 2024

A ready to use JSONP endpoints/payloads to help bypass content security policy (CSP) of different websites.

PHP 658 103 Updated May 6, 2024

A next-generation crawling and spidering framework.

Go 10,873 573 Updated Sep 18, 2024

Machine learning from scratch

Jupyter Notebook 1,006 49 Updated Sep 1, 2024

A Chrome Extension to track postMessage usage (url, domain and stack) both by logging using CORS and also visually as an extension-icon

JavaScript 1,034 144 Updated Jan 26, 2024

A browser extension that allows you to monitor, intercept, and debug JavaScript sinks based on customizable configurations.

JavaScript 396 35 Updated Aug 14, 2024

An IIS short filename enumeration tool

Go 742 72 Updated Jul 24, 2024

Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.

Go 3,885 437 Updated Aug 21, 2024

One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️

Python 5,554 681 Updated Sep 18, 2024

Cybersecurity oriented awesome list

1,096 119 Updated Sep 22, 2024

A collection of Bug Bounty Tips collected from GitHub to all bug bounty hunters

26 5 Updated Dec 12, 2023

A list of interesting payloads, tips and tricks for bug bounty hunters.

5,785 1,537 Updated Sep 14, 2023

Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature

3,708 982 Updated Jul 31, 2024

Unleash the power of cloud

Python 714 95 Updated Jun 17, 2024

jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice

Python 219 19 Updated Apr 9, 2024

Conference presentation slides

1,443 235 Updated Aug 10, 2024

Top disclosed reports from HackerOne

Python 3,749 699 Updated Sep 1, 2024

My Notes on Regular Expressions for AWAE/OSWE.

28 5 Updated Sep 5, 2023

OSWE, OSEP, OSED, OSEE

2,574 535 Updated Jun 16, 2024

Advanced SQL Injection Techniques for Bug Bounty Hunters

101 63 Updated Jul 24, 2024

List of Directory Traversal/LFI Payloads Scraped from the Internet

73 11 Updated Sep 21, 2024

Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3

Python 1,789 290 Updated Jan 2, 2024

InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable scans, and seamless Burp integration.

Python 1,522 156 Updated Jun 24, 2024

This repository is about @harshbothra_'s 365 days of Learning Tweets & Mindmaps collection.

1,580 392 Updated Jun 20, 2022

CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.

Java 80 2 Updated Jul 2, 2024

A list of resources for those interested in getting started in bug bounties

10,582 1,901 Updated Jul 23, 2024

Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist

Python 1,209 132 Updated Jul 14, 2024

Browser's XSS Filter Bypass Cheat Sheet

1,107 206 Updated May 6, 2017

🔥 Web-application firewalls (WAFs) from security standpoint.

Python 6,197 1,049 Updated Jul 12, 2023

A python script that finds endpoints in JavaScript files

Python 3,641 590 Updated Apr 13, 2024
Next