Bug bounty automation: recon, BOLA, reporting
Asura — an AI-powered offensive security agent that autonomously discovers, exploits, and documents vulnerabilities across target systems.
Curate lists of high-quality software, libraries, and resources across various programming topics.
Interactive OSCP+ / pentest operator checklist — 1,230 items, 18 phases, 109 machine writeups. Runs in-browser, works offline, extend it with your own methodology. Free & open source.
AI-powered OSINT & security reconnaissance toolkit for Python — subdomain finder, WAF detector, JWT analyzer, email breach & SPF/DMARC checker, GitHub secret scanner + a natural-language LLM agent. For bug bounty & pentesting.
Cyber Security ALL-IN-ONE Platform - English UI fork of yaklang/yakit
A comprehensive .git exposure detection, dumping, and recovery toolkit with integrated dump→extract workflow
Security tools and scripts for Termux — network scanning, password auditing, and ethical hacking on Android
⚡ All-in-one CLI toolkit for bug bounty hunters — recon, fuzzing, exploitation automation
🚀 Curated list of 100+ tools, wordlists, PoC templates, checklists & methodology for bug bounty hunters & security researchers
Free cybersecurity cheatsheets — pentesting, web exploitation, Active Directory, privilege escalation, network & forensics. Practice on free CTF challenges at aysec.tech.
A curated list of 141 hand-reviewed cybersecurity books, sorted by specialty (EN/FR). Full reviews & reading guides at https://www.cybershelf.org
Pure ESP-IDF 6.0.1 WiFi/BLE security tool: 5GHz deauth, Thread/Matter scanning, BLE 5.0 ext adv. No Arduino.
A collection of security research covering vulnerabilities, attack surfaces, and web security.
Ciberseguridad para humanos es una serie de módulos educativos diseñados para civiles. Explicado en español, con ejemplos reales, historias de víctimas y acciones concretas que puedes aplicar hoy.