Skip to content
View righettod's full-sized avatar
👨‍💻
In learning mode...
👨‍💻
In learning mode...

Organizations

@OWASP @oshp @ExcelliumSA

Block or report righettod

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A simple Jython script for Burp Suite to handle short time refresh tokens

Python 2 Updated Dec 6, 2024

Postman OSINT tool to extract creds, token, username, email & more from Postman Public Workspaces

Python 163 14 Updated Apr 22, 2025

🖇️ equivalence table between OWASP ASVS standard and STRIDE threat modeling methodology.

77 2 Updated Aug 22, 2024

OpenSSF Scorecard - Security health metrics for Open Source

Go 5,157 588 Updated Nov 25, 2025

Diff between two APK files.

Python 130 24 Updated Mar 10, 2023

A Burp Suite extension implementing the Signing HTTP Messages draft-ietf-httpbis-message-signatures-01 draft.

Java 42 10 Updated Aug 16, 2022

Display and control your Android device

C 131,710 12,323 Updated Nov 28, 2025

🐍 Manage and run your integration tests with efficiency - Venom run executors (script, HTTP Request, web, imap, etc... ) and assertions

Go 1,167 166 Updated Nov 20, 2025

Windows and Cygwin port of proxychains, based on MinHook and DLL Injection

C 1,086 132 Updated Nov 13, 2022

Top Ten Web Hacking Techniques List

751 108 Updated Nov 10, 2023

Notes about attacking Jenkins servers

Python 2,090 334 Updated Jul 10, 2024

An awesome list of FREE resources for training, conferences, speaking, labs, reading, etc that are free. Originally built during COVID-19 for cybersecurity professionals with downtime can take adva…

2,009 284 Updated Sep 1, 2022

Imperva's customizable API attack tool takes an API specification as an input, generates and runs attacks that are based on it as an output.

Java 487 94 Updated May 13, 2023

Enumerate interesting vhosts via a wordlist attack

Shell 5 3 Updated Mar 20, 2020

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…

PHP 67,208 24,800 Updated Nov 28, 2025

This repository will serve as the "master" repo containing all trainings and tutorials done in preperation for OSWE in conjunction with the AWAE course. This repo will likely contain custom code by…

Java 919 289 Updated Jan 6, 2025

Blind WAF identification tool

Python 708 129 Updated Jun 25, 2024

Swag for the OWASP projects and chapters

44 43 Updated Jul 18, 2025

FIDO2 & WebAuthn Proof of Concept

C# 38 13 Updated Feb 2, 2025

CLI tool that finds secrets accidentally committed to a git repo, eg passwords, private keys

Go 1,158 90 Updated Mar 7, 2023

A simple web app that helps developers understand the ASVS requirements. Now supporting ASVS 5.0

HTML 163 44 Updated Nov 25, 2025

incomplete iOS 10.2 jailbreak for 64 bit devices by qwertyoruiopz and marcograssi

Objective-C 1,767 552 Updated Apr 2, 2019

iOS Reverse Engineering

Shell 1,167 221 Updated Jun 30, 2018

A curated list of the most common and most interesting robots.txt disallowed directories.

Shell 1,476 303 Updated Aug 22, 2022

The Most Comprehensive Docker Security Scanner

Go 1,377 199 Updated Nov 29, 2025

BDD Automated Security Tests for Web Applications

Java 568 178 Updated Nov 16, 2022