68 results for “topic:bugcrowd”
This repo contains hourly-updated data dumps of bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) that are eligible for reports
Sudomy is a subdomain enumeration tool to collect subdomains and analyzing domains performing automated reconnaissance (recon) for bug hunting / pentesting
Tips and Tutorials for Bug Bounty and also Penetration Tests.
Search Google/Bing/Ecosia/DuckDuckGo/Yandex/Yahoo for a search term (dork) with a default set of websites, bug bounty programs or custom collection.
BUG BOUNTY WRITEUPS - OWASP TOP 10 🔴🔴🔴🔴✔
This project crawls bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) hourly and dumps them into the bounty-targets-data repo
This repository contains all the material from the talk "Esoteric sub-domain enumeration techniques" given at Bugcrowd LevelUp 2017 virtual conference
Jie stands out as a comprehensive security assessment and exploitation tool meticulously crafted for web applications. Its robust suite of features encompasses vulnerability scanning, information gathering, and exploitation, elevating it to an indispensable toolkit for both security professionals and penetration testers. 挖洞辅助工具(漏洞扫描、信息收集)
Bugcrowd’s baseline priority ratings for common security vulnerabilities
DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it
Find exposed API keys based on RegEx and get exploitation methods for some of keys that are found
Bugbounty scope tool
Monitoring framework to detect and report newly found subdomains on a specific target using various scanning tools
Python library and CLI for the Bug Bounty Recon API
Domains belonging to the most reputed public bug bounty programs. [NOT FOR NON-MONETARY OR PRIVATE PROGRAMS]
Hacking tools
⚡Chrome extension allows you to create lists of Google and Github dork to open multiple tabs with one click, import "scope/out of scope" from #HackerOne #Bugcrowd #Intigriti ...
Multithreaded Plugin based vulnerability scanner for mass detection of web-based applications vulnerabilities
Cryptography Tool | RSA Attacks
Advanced external automation on bug bounty programs by running the best set of tools to perform scanning and finding out vulnerabilities.
BackupFinder discovers backup files on web servers by generating intelligent patterns.
An automated GitHub Actions-based crawler that fetches and updates public scopes from popular bug bounty platforms (like Hackerone/Bugcrowd/Intigriti/etc) (updates every 10 minutes)
It's an watcher for new scopes added to bounty-targets-data and send you alert to Slack.
Credentials Checking Framework
Simple Script to install recommended Bug Bounty Hunting Tools In Your Linux Disto
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
BugBounty Tool
CLI tool for fetching URLs from Wayback Machine, Common Crawl, and VirusTotal.
CLI tool for filtering URLs/IPs with automatically-updated Bug Bounty program scope rules.
Web-based Android debugger with inspection capabilities using Frida and Jadx as a backbone