Skip to content
@doyensec

Doyensec

Doyensec works at the intersection of software development and offensive engineering. We discover vulnerabilities others cannot, and help mitigate the risk.

Popular repositories Loading

  1. inql inql Public

    InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable scans, and seamless Burp integration.

    Kotlin 1.6k 166

  2. electronegativity electronegativity Public

    Electronegativity is a tool to identify misconfigurations and security anti-patterns in Electron applications.

    JavaScript 989 68

  3. regexploit regexploit Public

    Find regular expressions which are vulnerable to ReDoS (Regular Expression Denial of Service)

    Python 804 57

  4. awesome-electronjs-hacking awesome-electronjs-hacking Public

    A curated list of awesome resources about Electron.js (in)security

    620 62

  5. burpdeveltraining burpdeveltraining Public

    Material for the training "Developing Burp Suite Extensions – From Manual Testing to Security Automation"

    Java 350 70

  6. wsrepl wsrepl Public

    WebSocket REPL for pentesters

    Python 218 15

Repositories

Showing 10 of 57 repositories
  • inql Public

    InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable scans, and seamless Burp integration.

    Kotlin 1,609 Apache-2.0 166 30 (3 issues need help) 0 Updated Apr 11, 2025
  • tsunami-security-scanner-plugins Public Forked from google/tsunami-security-scanner-plugins

    This project aims to provide a central repository for many useful Tsunami Security Scanner plugins.

    Java 0 Apache-2.0 209 0 0 Updated Apr 11, 2025
  • osv-scalibr Public Forked from google/osv-scalibr
    Go 0 Apache-2.0 38 0 1 Updated Apr 10, 2025
  • CSPTPlayground Public

    CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).

    JavaScript 115 Apache-2.0 11 0 0 Updated Mar 31, 2025
  • malicious-devfile-registry Public

    Exploit for CVE-2024-0402 in Gitlab

    Dockerfile 12 5 0 0 Updated Mar 18, 2025
  • GQLSpection Public

    GQLSpection - parses GraphQL introspection schema and generates possible queries

    Python 83 Apache-2.0 11 7 (1 issue needs help) 2 Updated Mar 6, 2025
  • SSHNuke_info Public

    SSH Nuke Info

    C 4 0 0 0 Updated Mar 4, 2025
  • Python 0 0 0 0 Updated Mar 3, 2025
  • awesome-electronjs-hacking Public

    A curated list of awesome resources about Electron.js (in)security

    620 62 0 0 Updated Mar 1, 2025
  • Python 0 Apache-2.0 36 0 1 Updated Feb 28, 2025

Top languages

Loading…

Most used topics

Loading…