oxfg Goto Github PK
Type: User
Type: User
RedTeam/Pentest notes and experiments tested on several infrastructures related to professional engagements.
A curated list of various bug bounty tools
A curated list of bugbounty writeups (Bug type wise) , inspired from https://github.com/ngalongc/bug-bounty-reference
Active Directory & Red-Team Cheat-Sheet in constant expansion.
Azure Security Resources and Notes
You didn't think I'd go and leave the blue team out, right?
A collection of notes, checklists, writeups on bug bounty hunting and web application security.
A repository that includes all the important wordlists used while bug hunting.
A list of interesting payloads, tips and tricks for bug bounty hunters.
Bug Bounty Guide is a launchpad for bug bounty programs and bug bounty hunters.
Helped during my OSCP lab days.
Useful Cobalt Strike techniques learned from engagements
One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️
Discovery Header Bug Bounty to DoD
Cheatsheets, References, and notes on various red teaming/pentesting topics.
Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
A container repository for my public web hacks!
A Collection of Notes, Checklists, Writeups on Bug Bounty Hunting and Web Application Security.
Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens that are already exploitable, so we can report them. We wish to influence Onelinetips and explain the commands, for the better understanding of new hunters..
Community curated list of templates for the nuclei engine to find security vulnerabilities.
Rockyou for web fuzzing
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
A collection of snippets of codes and commands to make your life easier!
Pentester's Promiscuous Notebook
A general collection of information, tools, and tips regarding CTFs and similar security competitions
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
Windows for Red Teamers
Common Wordlists
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.