A tiny web auditor with strong opinions.
-
Updated
Jan 22, 2025 - Shell
A tiny web auditor with strong opinions.
Dive into a handpicked selection of tools, guides, and tips tailored for beginners in Bug Bounty and Penetration Testing. 🐛🛡️
This script is designed to help expedite a web application assessment by automating some of the assessment steps (e.g., running nmap, sublist3r, metasploit, etc.)
🐳 VMs are bloat. Dockerise your VAPT environment
Study notes from PortSwigger's Web Security Academy
Behavioral-discipline skill turning an AI agent into a methodical, non-robotic bug-bounty & pentest hunter - 42 always-on rules: scope, coverage, no false positives, never quits early.
Stage Two containers of OWASP PurpleTeam
Full-spectrum security assessment tool for opencode — defensive code audit (17 vulnerability categories) + offensive penetration testing (63 attack categories, 15 agents, 11 domains). AI-powered AppSec, red teaming, and pentesting for vibe-coded apps.
Automated installer and configuration script for Acunetix v25.1 on Linux.
This Repository contains Docker image of Kali Linux (rolling)combined with the n8n Automation Platform and Redteam and CTF Solver Workflows
Super Repository streamlines package and tool installations on Linux. It combines a variety of packages, tools, and repositories from official sources. Using package managers like apt, snap, and pip3, it ensures smooth installations.
Professional penetration testing skills for Claude Code — structured offensive workflows for AD and web pentests.
A lightweight 'Encoded cURL' wrapper for encoding payloads in pentesting automation and custom scripts
Personal AppSec / pentest knowledge base — cheatsheets, payloads, scripts, and bundled tools. Authorized testing only.
Ethical hacking 🧑💻 is the legal way of breaking into systems 💻 to check and improve their security 🔐. White-hat hackers 🤍 work with permission ✅ to find and fix problems 🛠️ before bad hackers 🕵️♂️ exploit them. It helps in pen testing 🧪, risk checks
🐱👤 Introduction project to web security - OWASP
Мини‑утилита для GeoIP‑lookup из терминала и обогащения данных, как плагина, для BurpSuit. Работает через curl с jq на бесплатном API ip-api.com (без ключа), а также с ipapi-co провайдером.
Cloudflare-aware abuse swatter for cPanel + CSF: scores web-log IPs on behavioral signals + threat-intel and blocks attackers on the right plane — CSF for direct-to-origin, Cloudflare WAF for proxied — so it never firewalls a CF edge.
A structured recon-only framework for bug bounty hunters, from DNS basics to JS mining, API discovery, and automation pipelines.
Acunetix Target Management Tool is a command-line utility designed for streamlined target scanning with Acunetix. It offers features like group management, initiating group scans, and real-time Telegram bot notifications.
To associate your repository with the web-security topic, visit your repo's landing page and select "manage topics."