
Awesome-WAF
Everything about Web Application Firewalls (WAFs) from Security Standpoint! 🔥

Everything about Web Application Firewalls (WAFs) from Security Standpoint! 🔥

Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens that are…

Metasploitable3 is a VM that is built from the ground up with a large amount of security vulnerabilities.

An authoritative list of awesome devsecops tools with the help from community experiments and contributions.

A comprehensive, step-by-step guide to mastering cybersecurity from beginner to expert level with curated resources, tools, and career guidance

Building 70 Projects ranging from beginner to advanced so anyone can — learn from, build upon, use as a reference, or even copy directly. Gamified…


This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 solely and…

Open-source AI reverse-engineering agent using Ghidra and LLMs to reconstruct and validate C/C++ functions from binaries.

An open source threat modeling tool from OWASP

Remove visible and invisible AI watermarks and provenance metadata from images and video. Python library and CLI for SynthID, C2PA, EXIF, IPTC, XMP,…

A pentest reporting tool written in Python. Free yourself from Microsoft Word.

Perform a MitM attack and extract clear text credentials from RDP connections

Python decompiler for 3.7-3.8 Stripped down from uncompyle6 so we can refactor and start to fix up some long-standing problems

A structured course built from personal study notes of the book Linux Basics for Hackers by OccupyTheWeb.

Free educational content on reverse engineering and malware analysis from the FLARE team

Every Security Engineer Interview Question From Glassdoor.com

AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security…