Skip to content
View CSbyGB's full-sized avatar

Block or report CSbyGB

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

Bambdas to use within Burp Suite

1 Updated Jun 16, 2025

EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.

Python 5,566 904 Updated Dec 18, 2025

Damn Vulnerable Restaurant is an intentionally vulnerable Web API game for learning and training purposes dedicated to developers, ethical hackers and security engineers.

Python 870 161 Updated Nov 16, 2025

A collection of real-world threat model examples across various technologies, providing practical insights into identifying and mitigating security risks.

472 73 Updated Jun 12, 2025

AndroGoat

Kotlin 307 94 Updated Nov 22, 2025

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

OCaml 13,699 845 Updated Dec 25, 2025

The OWASP MASVS (Mobile Application Security Verification Standard) is the industry standard for mobile app security.

Python 2,298 580 Updated Dec 22, 2025

Vulnerability Database

4 1 Updated May 9, 2025

Leveraging UART, SPI and JTAG for firmware extraction

HTML 6 Updated May 12, 2019

🐍 A toolkit for testing, tweaking and cracking JSON Web Tokens

Python 6,285 751 Updated May 1, 2025

Repo for Concierge AI dev work

Python 196 34 Updated Dec 16, 2025

Red Kite, the Extensible Attack Surface Management tool.

TypeScript 88 5 Updated Dec 22, 2025

SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, se…

PHP 67,756 24,838 Updated Dec 25, 2025

toybox

C 2,989 385 Updated Dec 11, 2025

A collection of Active Directory, phishing, mobile technology, system, service, web application, and wireless technology weaknesses that may be discovered during a penetration test.

255 24 Updated Aug 31, 2022

Sparty - MS Sharepoint and Frontpage Auditing Tool

Python 32 17 Updated Aug 4, 2014

Sparty - MS Sharepoint and Frontpage Auditing Tool [Unofficial]

Python 97 37 Updated Nov 12, 2013

An MS Sharepoint and Frontpage Auditing Tool

Python 57 15 Updated Nov 18, 2024

SSH-Snake is a self-propagating, self-replicating, file-less script that automates the post-exploitation task of SSH private key and host discovery.

Shell 2,294 221 Updated Jul 27, 2025

a collection of handy bookmarks

1,098 356 Updated Dec 30, 2023

⚠️ This repo is no longer in use. Please refer to https://github.com/OWASP/www-project-vulnerable-web-applications-directory

880 219 Updated Dec 15, 2025

Community curated list of templates for the nuclei engine to find security vulnerabilities.

JavaScript 11,714 3,254 Updated Dec 25, 2025

Simple playbook to create a lab for learning ansible based in containers

Dockerfile 1 Updated Jan 8, 2020

ansible-kali-everlearning rebase

Vim Script 2 Updated Jun 28, 2022

Small http proxy implementation, to learn

Nim 5 2 Updated Nov 5, 2022

application server attack toolkit

Python 690 196 Updated Apr 6, 2020

Command-line client for WebSockets, like netcat (or curl) for ws:// with advanced socat-like functions

Rust 8,222 317 Updated Oct 24, 2025

Awesome information for WebSockets security research

296 33 Updated Jan 10, 2022

Jumpstart multiple WebSocket servers quickly

HTML 31 4 Updated Nov 23, 2021
Next