Stars
- All languages
- Assembly
- Astro
- Awk
- C
- C#
- C++
- CSS
- Clojure
- Dart
- Dockerfile
- Elixir
- FreeMarker
- Go
- HTML
- Handlebars
- Haskell
- Java
- JavaScript
- Jinja
- Jupyter Notebook
- Lua
- MDX
- Makefile
- Markdown
- Nunjucks
- OCaml
- Objective-C
- PHP
- Perl
- PowerShell
- Python
- QML
- Ruby
- Rust
- SCSS
- Scala
- Shell
- Slim
- Solidity
- Svelte
- Swift
- TeX
- TypeScript
- Vala
- Vim Script
- Vue
- XSLT
DotDotPwn - The Directory Traversal Fuzzer
Gopher protocol is used a lot when exploiting SSRF. This script generates a gopher payload what can be user to submit data to a webform.
Official repository of the web automation tool WebDetective
Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application
Automatic SSTI detection tool with interactive interface
Hurl, run and test HTTP requests with plain text.
Server-Side Template Injection and Code Injection Detection and Exploitation Tool
ChatBot Injection and Exploit Examples: A Curated List of Prompt Engineer Commands - ChatGPT
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
A curated list of awesome command-line frameworks, toolkits, guides and gizmos. Inspired by awesome-php.
🎯 XML External Entity (XXE) Injection Payload List
Official repository for the Security Frameworks by SEAL. Currently under development, not a release.
HTTPLeaks - All possible ways, a website can leak HTTP requests
View HTTP/HTTPS requests made by any Linux program
Air Script is a powerful Wi-Fi auditing tool with optional email alerts for captured handshakes.
ESLint plugin with rules to help you achieve a scalable, consistent, and well-structured project. Define your folder structure, file composition, advanced naming conventions, and create independent…
🚀 An open and lightweight modification to Windows, designed to optimize performance, privacy and usability.
The Gameboy emulator that runs anywhere (Terminal, Web, Desktop)
🎯 Command Injection Payload List
Deriving RSA public keys from message-signature pairs
An AI-powered file management tool that ensures privacy by organizing local texts, images. Using Llama3.2 3B and Llava v1.6 models with the Nexa SDK, it intuitively scans, restructures, and organiz…
BrowserSnatch is a powerful browser stealer or browser data extraction tool intended to be used for ethical hacking or penetration testing.
Dump cookies and credentials directly from Chrome/Edge process memory
Open source templates you can use to bootstrap your security programs
Printer Exploitation Toolkit - The tool that made dumpster diving obsolete.
Execute ELF files without dropping them on disk
Free, simple, and intuitive online database diagram editor and SQL generator.