DiogoMRSilva/websitesVulnerableToSSTI
Simple websites vulnerable to Server Side Template Injections(SSTI)
A security bots craftsman
Simple websites vulnerable to Server Side Template Injections(SSTI)
This repository was created and developed by Ammar Amer @cry__pto Only. Updates to this repository will continue to arrive until the number of links reaches 10000 links & 10000 pdf files .Learn Ethical Hacking and penetration testing .hundreds of ethical hacking & penetration testing & red team & cyber security & computer science resources.
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
Subfinder is a subdomain discovery tool that discovers valid subdomains for websites. Designed as a passive framework to be useful for bug bounties and safe for penetration testing.
In-depth Attack Surface Mapping and Asset Discovery
Web app with several possible cases of reflection
A wordlist of API names for web application assessments
A list of interesting payloads, tips and tricks for bug bounty hunters.
The OWASP ZAP core project
OWASP ZAP Add-ons
The help files for the OWASP ZAP core
The source of OWASP ZAP website
Content discovery wordlists generated using BigQuery
TCP port scanner, spews SYN packets asynchronously, scanning entire Internet in under 5 minutes.
A high-performance DNS stub resolver for bulk lookups and reconnaissance (subdomain enumeration)
Find domains and subdomains related to a given domain
This project crawls bug bounty platform scopes (like Hackerone/Bugcrowd/etc) hourly and dumps them into the bounty-targets-data repo
A full-fledged msfrpc library for Metasploit framework.
Various tools for working with Data URLs, incl. web application (http://dataurl.net), Mac OS X GUI app, command line tool, Perl modules and Apache module.
The cheat sheet about Java Deserialization vulnerabilities
Encrypt your files when you're away with your smartphone, seamlessly! (your mom will never find your porn again)