Subhash's Projects
Gatsby starter for a Contentful project from the community.
Android Remote Administration Tool
A multifunctional Android RAT with GUI based Web Panel without port forwarding.
All about bug websites (bypasses, payloads, and etc)
A Simple android remote administration tool using sockets. It uses java on the client side and python on the server side
Aron is a GO script for finding hidden GET & POST parameters
A collection of awesome API Security tools and resources. The focus goes to open-source tools and resources that benefit all the community.
A script to set up a quick Ubuntu 17.10 x64 box with tools I use.
Nuclei Templates to reproduce Cracking the lens's Research
A curated list of blockchain security Capture the Flag (CTF) competitions
Automatize process of Partner Program of es.quora.com
Course content, lab setup instructions and documentation of our very popular Breaking and Pwning Apps and Servers on AWS and Azure hands on training!
My personal bug bounty toolkit.
Here Are Some Collected resource from twitter
BBT - Bug Bounty Tools
Day by day Lots of Newbie Come into bug Bounty They ask Social Site about Bug Bounty Site, So That's why I open My Hunted All Site.
My small collection of reports templates
bug bounty site list
Performing SQLInjection test on Burp Suite Bulk Requests using SQLMap
Bypassing-Web-Application-Firewalls-And-XSS-Filters A series of python scripts for generating weird character combinations and lists for BurpSuite Pro for bypassing web application firewalls (WAF) and XSS filters. These python scripts have been created to fuzz wierd combinations: URL Escape Characters HTML Escape Characters Binary Characters These scripts were created during an assessment, while trying to bypass a Web Application Firewall (WAF) in order to exploit a XSS vulnerability. Differnt webservers and browsers interpret URL and strange characters differently which could lead to the bypassing of security controls. When I tried to send a > or < character the WAF would block the request. The following URL escapes I have noticed are traslated to < > ' by Apache2 based web servers: %(N%(n%)S%)U%)^%)s%)u%*C%*E%*c%*e%,.%.#%1N%1n%2S%2U%2^%2s%2u%3C%3E%3c%3e%5.%7#%:C%:E %:c%:e%HN%Hn%IS%IU%I^%Is%Iu%JC%JE%Jc%Je%L.%N#%XN%Xn%YS%YU%Y^%Ys%Yu%ZC%ZE%Zc%Ze%.%^# %hN%hn%iS%iU%i^%is%iu%jC%jE%jc%je%l.%n#%xN%xn%yS%yU%y^%ys%yu%zC%zE%zc%ze%|
Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one place
Get unencrypted 'Saved Password' from Google Chrome
NITW Complain Portal
Web recon tool (find temporary files, parse robots.txt, search some folders, google dorks and search domains hosted on same server)
Stuff related with ctf competitions