Found 1,066 repositories(showing 30)
Hacker0x01
Source code for Hacker101.com - a free online web and mobile security class.
reddelexc
Top disclosed reports from HackerOne
arkadiyt
This repo contains hourly-updated data dumps of bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) that are eligible for reports
screetsec
Sudomy is a subdomain enumeration tool to collect subdomains and analyzing domains performing automated reconnaissance (recon) for bug hunting / pentesting
0xmaximus
Tips and Tutorials for Bug Bounty and also Penetration Tests.
A big list of Android Hackerone disclosed reports and other resources.
shuvonsec
AI-powered bug bounty hunting from your terminal - recon, 20 vuln classes, autonomous hunting, and report generation. All inside Claude Code.
sw33tLie
Scope aggregation tool for HackerOne, Bugcrowd, Intigriti, YesWeHack, and Immunefi!
Zarcolio
Search Google/Bing/Ecosia/DuckDuckGo/Yandex/Yahoo for a search term (dork) with a default set of websites, bug bounty programs or custom collection.
alexbieber
BUG BOUNTY WRITEUPS - OWASP TOP 10 🔴🔴🔴🔴✔
arkadiyt
This project crawls bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) hourly and dumps them into the bounty-targets-data repo
yhy0
Jie stands out as a comprehensive security assessment and exploitation tool meticulously crafted for web applications. Its robust suite of features encompasses vulnerability scanning, information gathering, and exploitation, elevating it to an indispensable toolkit for both security professionals and penetration testers. 挖洞辅助工具(漏洞扫描、信息收集)
Bywalks
DarkAngel 是一款全自动白帽漏洞扫描器,从hackerone、bugcrowd资产监听到漏洞报告生成、漏洞URL截屏、消息通知。
manoelt
$50 Million CTF from Hackerone - Writeup
testert1ng
Hacker101 CTF Writeup
zricethezav
HackerOne "in scope" domains
fransr
Automated security reporting from markdown templates (HackerOne and Bugcrowd are currently the platforms supported)
M4DM0e
DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it
aldaor
Here you can find mostly all disclosed h1 reports
sdushantha
Find exposed API keys based on RegEx and get exploitation methods for some of keys that are found
root4loot
Bugbounty scope tool
adysec
HackerOne资产更新 | 每日更新HackerOne资产,对HackerOne的资产进行爬行和整理,SRC资产更新仅会增加,不会进行删除,每天更新的可以进行差异化对比来获取到新的项目资产范围
Hacker0x01
A collection of hacker tools using HackerOne's API
BitTheByte
Monitoring framework to detect and report newly found subdomains on a specific target using various scanning tools
PatrikFehrenbach
MCP server that connects AI assistants to HackerOne for bug bounty hunting
serain
Python library and CLI for the Bug Bounty Recon API
ARPSyndicate
Domains belonging to the most reputed public bug bounty programs. [NOT FOR NON-MONETARY OR PRIVATE PROGRAMS]
infosec-au
[depreciated] Terminal dashboard for bug bounty hunters that use HackerOne and Bugcrowd
Kalyan-Deva
Collection of Combination of 👨🏻💻Ethical Hacking, 🐧Linux, Cyber security, 💰Bug Bounty, Penetration testing, Networking and more IT Related Books that are Publicly Available.
kh4sh3i
smartrecon is a powerful shell script to automate the recon and finding common vulnerabilities for bug hunter