
XSS-Bypass-Filters
Curated XSS payload collection and filter-bypass cheat sheet: WAF-specific evasion, JS/HTML injection vectors, encoding tricks, DOMPurify and…

Curated XSS payload collection and filter-bypass cheat sheet: WAF-specific evasion, JS/HTML injection vectors, encoding tricks, DOMPurify and…

Log4Shell / Log4J Payload - CVE-2021-45046 and CVE-2022-42889

Provides a reusable upload template for CVE-2026-0740, supporting proof-of-concept payload submission and validation workflows.

Provides information and proof-of-concept for CVE-2021-45046, a Log4j vulnerability, including payload examples and remediation links.

Git All the Payloads! A collection of web attack payloads.

Curated CSV collection of community-sourced Web Application Firewall bypass payloads for testing and validating WAF protections.

This is a webshell open source project

Technical dossier on the DPRK-linked PolinRider supply-chain attack, documenting obfuscated JS payload injection, git history manipulation, C2…

Generated CVE-2026-64633 analysis payloads with treatment/control document variants and a manifest mapping IDs and pairs for reproducing the…

Curated collection of XSS payload vectors for web application security testing, covering various contexts and bypass techniques.

Here Are Some Bug Bounty Resource From Twitter

This are different types of download cradles which should be an inspiration to play and create new download cradles to bypass AV/EPP/EDR in context…

SecRep Is a Repository That Contain Useful Intrusion, Penetration and Hacking Archive Including Tools List, Cheetsheet and Payloads

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

All about bug bounty (bypasses, payloads, and etc)

Practical study notes and walkthroughs for PortSwigger Academy labs, covering web vulnerabilities, payloads, enumeration, and BSCP exam strategies.

TOP All bugbounty pentesting CVE-2023- POC Exp RCE example payload Things