Skip to content
View r1skkam's full-sized avatar

Block or report r1skkam

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Stars

Bug Hunting

29Aug22Mon
22 repositories

A collection of awesome one-liner scripts especially for bug bounty tips.

2,773 594 Updated Jul 29, 2024

Tips and Tutorials for Bug Bounty and also Penetration Tests.

1,449 351 Updated Feb 12, 2024

Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens that are already exploitable, so we can report them. We wis…

Go 4,349 834 Updated Jan 23, 2025

A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference

Python 4,847 1,031 Updated Aug 6, 2023

A Collection of Notes, Checklists, Writeups on Bug Bounty Hunting and Web Application Security.

1,841 308 Updated Sep 5, 2021

All Things Bug Bounty

113 17 Updated Jun 1, 2022

Repository of Bug-Bounty Writeups

284 45 Updated Feb 2, 2025

A basic webapp to test XSS payloads.

PHP 23 5 Updated May 1, 2023

"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.

Python 5,028 736 Updated Feb 8, 2025

oneliner commands for bug bounties

436 77 Updated Jul 25, 2022

Bugcrowd’s baseline priority ratings for common security vulnerabilities

Python 461 90 Updated Feb 12, 2025

BigBountyRecon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial reconnaissance on the target organisation.

C# 1,307 254 Updated Jan 29, 2021

Fast passive subdomain enumeration tool.

Go 11,158 1,329 Updated Feb 18, 2025

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

OCaml 11,159 660 Updated Feb 19, 2025

This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 solely and completely with "BurpSuite".

2,296 470 Updated Nov 16, 2024

A list of resources for those interested in getting started in bug bounties

11,019 1,947 Updated Jul 23, 2024

A Python script designed to monitor bug bounty programs for any changes and promptly notify users.

Python 175 36 Updated Apr 25, 2024

Burp Extension for a passive scanning JS files for endpoint links.

Python 763 102 Updated Mar 22, 2024

A python script that finds endpoints in JavaScript files

Python 3,825 609 Updated Apr 13, 2024

SubDominator helps you discover subdomains associated with a target domain efficiently and with minimal impact for your Bug Bounty

Python 511 98 Updated Dec 23, 2024

List of Google Dorks for sites that have responsible disclosure program / bug bounty program

1,354 403 Updated Jul 19, 2023

Source code for Hacker101.com - a free online web and mobile security class.

SCSS 13,922 2,564 Updated Feb 11, 2025