无数据
订阅者
无数据24 小时
+37 天
-430 天
帖子存档
reNgine is an automated intelligence framework for web applications that emphasizes a highly customizable, streamlined intelligence process through engines, intelligence correlation and organization, continuous database-based monitoring, and a simple yet intuitive user interface.
https://github.com/yogeshojha/rengine
OTP Stealing Tools / Bypass SMS Verification
https://github.com/GuallaGang508/SMSBotBypass
https://github.com/Oriyomi12/otp-bot
https://github.com/NameNami/OTP-Bot
https://github.com/justwalletkk/OTP-Bot
https://github.com/hahnavi/telbot-otp
https://github.com/injectexpert/SMSBypass
https://github.com/jonahtanjz/OTP-Bot
WINDSCRIBE VPN 20 GB FREE (GIFTCODE)👉
1. Create a https://windscribe.com account with real gmail (verification)
2. Check the mail to get 10GB free
3. Go to Account and select 'Claim voucher'
4. Enter the code YIHAKURI to get 20GB for free.
Send screenshot to
@Technicaldevang_bot
List of Useful Resources for Pentesters and Hackers
Hacking manuals:
▪️ http://www.ehacking.net/
▪️ http://www.securitytube.net/
▪️ http://www.hacking-tutorial.com/
▪️ https://www.offensive-security.com/
▪️ http://breakthesecurity.cysecurity.org/
▪️ http://www.spacerogue.net/wordpress/
▪️ https://www.youtube.com/user/Hak5Darren
▪️ https://www.youtube.com/user/sansinstitute
▪️ https://vimeo.com/channels/fullscopesecurity
▪️ http://www.kalitutorials.net/2013/08/kali-linux.html
▪️ https://www.youtube.com/user/DEFCONConference
▪️ https://en.wikibooks.org/wiki/Metasploit/VideoTutorials
Antiviruses:
▪️ http://fuckingscan.me/
▪️ http://v2.scan.majyx.net/
▪️ http://nodistribute.com/
▪️ http://www.file2scan.net/
▪️ https://t.me/hackingtipp
▪️ http://anubis.iseclab.org/
▪️ https://anonscanner.com/
▪️ http://virusscan.jotti.org/it
▪️ https://www.virustotal.com/nl/
Services for working with IP:
▪️ http://ip-api.com/
▪️ http://ipaddress.com
▪️ http://whatstheirip.com
▪️ http://www.whatismyip.com/
▪️ https://t.me/hackingtipp
▪️ http://www.ip2location.com/demo
▪️ http://www.my-ip-neighbors.com/
▪️ http://freegeoip.net/static/index.html
▪️ http://www.ip-adress.com/ipaddresstolocation/
Anonymity check:
▪️ https://ipleak.net/
▪️ https://www.dnsleaktest.com/
▪️ https://diafygi.github.io/webrtc-ips/
Here are 100 automated vulnerability scanning tools, both free and paid <3
OWASP Zed Attack Proxy (ZAP)
Burp Suite
Nikto
Nessus
Nmap
Acunetix
QualysGuard
Rapid7 Nexpose
Tenable.io
OpenVAS
Arachni
Vega
Netsparker
Intruder
WebInspect
AppScan
Metasploit Pro
Wapiti
Detectify
sqlmap
Astra Security Suite
Probely
WhiteHat Sentinel
Retire.js
Veracode
WPScan
Censys
Shodan
Fiddler
Kali Linux
Shadow Daemon
SiteGuarding
AppCheck
Immunio
Code Dx
HCL AppScan
Checkmarx
GitLab Ultimate
Kiuwan
RIPS Technologies
JFrog Xray
Snyk
Sonatype Nexus Lifecycle
Dependency-Check
Fortify WebInspect
SecApps Suite
Pentest-Tools.com
BinaryEdge
Reconmap
ZeroNorth
Portswigger Collaborator
Skipfish
Nuclei
BeEF (Browser Exploitation Framework)
Grendel-Scan
WebCruiser
Apache JMeter
DeepScan
Wallarm
Ratproxy
Seccubus
IronWASP
Paros Proxy
Powerfuzzer
F5 Advanced Web Application Firewall
SecureLayer7
Cloudflare Web Application Firewall
Imperva Web Application Firewall
StackPath Web Application Firewall
Reblaze
WebARX
Websecurify
AppTrana
Dome9
Indusface
SQLninja
sqlsus
Havij
JSQL Injection
WebVulnScan
Sitadel
Screaming Frog SEO Spider
GasMask
Plecost
CMSmap
Findomain
Mobsfscan
Tsunami Security Scanner
W3af
Patrowl
VulnWhisperer
Vulmap
DASTProxy
DSSS (Damn Small SQLi Scanner)
Grabber
XSSer
Tishna
HTTPCS Security
Bug Bounty tool List
dnscan https://github.com/rbsec/dnscan
Knockpy https://github.com/guelfoweb/knock
Sublist3r https://github.com/aboul3la/Sublist3r
massdns https://github.com/blechschmidt/massdns
Nmap https://nmap.org
Masscan https://github.com/robertdavidgraham/masscan
EyeWitness https://github.com/ChrisTruncer/EyeWitness
DirBuster https://sourceforge.net/projects/dirbuster/
dirsearch https://github.com/maurosoria/dirsearch
Gitrob https://github.com/michenriksen/gitrob
git-secrets https://github.com/awslabs/git-secrets
sandcastle https://github.com/yasinS/sandcastle
bucket_finder https://digi.ninja/projects/bucket_finder.php
GoogD0rker https://github.com/ZephrFish/GoogD0rker/
Wayback Machine https://web.archive.org
waybackurls https://gist.github.com/mhmdiaa/adf6bff70142e5091792841d4b372050
Sn1per https://github.com/1N3/Sn1per/
XRay https://github.com/evilsocket/xray
wfuzz https://github.com/xmendez/wfuzz/
patator https://github.com/lanjelot/patator
datasploit https://github.com/DataSploit/datasploit
hydra https://github.com/vanhauser-thc/thc-hydra
changeme https://github.com/ztgrace/changeme
MobSF https://github.com/MobSF/Mobile-Security-Framework-MobSF/
Apktool https://github.com/iBotPeaches/Apktool
dex2jar https://sourceforge.net/projects/dex2jar/
sqlmap http://sqlmap.org/…
https://osint.website/2023/07/bug-bounty-tool-list/
WINDSCRIBE VPN 20 GB FREE (GIFTCODE)👉
1. Create a https://windscribe.com account with real gmail (verification)
2. Check the mail to get 10GB free
3. Go to Account and select 'Claim voucher'
4. Enter the code YIHAKURI to get 20GB for free.
Collection of Wordpress Exploits
https://github.com/0xd3vil/WP-Vulnerabilities-Exploits
30 cybersecurity search engines:
1. Dehashed—View leaked credentials.
2. SecurityTrails—Extensive DNS data.
3. DorkSearch—Really fast Google dorking.
4. ExploitDB—Archive of various exploits.
5. ZoomEye—Gather information about targets.
6. Pulsedive—Search for threat intelligence.
7. GrayHatWarfare—Search public S3 buckets.
8. PolySwarm—Scan files and URLs for threats.
9. Fofa—Search for various threat intelligence.
10. LeakIX—Search publicly indexed information.
11. DNSDumpster—Search for DNS records quickly.
12. FullHunt—Search and discovery attack surfaces.
13. AlienVault—Extensive threat intelligence feed.
14. ONYPHE—Collects cyber-threat intelligence data.
15. Grep App—Search across a half million git repos.
16. URL Scan—Free service to scan and analyse websites.
17. Vulners—Search vulnerabilities in a large database.
18. WayBackMachine—View content from deleted websites.
19. Shodan—Search for devices connected to the internet.
20. Netlas—Search and monitor internet connected assets.
21. CRT sh—Search for certs that have been logged by CT.
22. Wigle—Database of wireless networks, with statistics.
23. PublicWWW—Marketing and affiliate marketing research.
24. Binary Edge—Scans the internet for threat intelligence.
25. GreyNoise—Search for devices connected to the internet.
26. Hunter—Search for email addresses belonging to a website.
27. Censys—Assessing attack surface for internet connected devices.
28. IntelligenceX—Search Tor, I2P, data leaks, domains, and emails.
29. Packet Storm Security—Browse latest vulnerabilities and exploits.
30. SearchCode—Search 75 billion lines of code from 40 million projects.
A Toolkit to detect and keep track on Blind XSS, XXE & SSRF
https://github.com/SpiderMate/B-XSSRF
Gurugram police announces the Cyber Security Summer Internship 2022.Last date of application is 24th May 2022.
Decision of Selection Committee will be final.Interested candidates can apply on the given link - https://forms.gle/75Hgnxd4beFKM7pT7
#GPCSSI2022 #internship #police
Burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to spot authentication/authorization issues, and converts Http requests to Javascript for further XSS exploitation and more.
https://github.com/ExpLangcn/agartha
ZeoroPointSecurity - Red Team Ops
https://mega.nz/folder/kINjgILL#CYouUd6lMPtyR0FJPwnfyQ
