All Projects → nahamsec → Resources For Beginner Bug Bounty Hunters

nahamsec / Resources For Beginner Bug Bounty Hunters

A list of resources for those interested in getting started in bug bounties

Projects that are alternatives of or similar to Resources For Beginner Bug Bounty Hunters

Collection Document
Collection of quality safety articles. Awesome articles.
Stars: ✭ 1,387 (-80.7%)
Mutual labels:  hacking, pentest, xss, bug-bounty
Hacker101
Source code for Hacker101.com - a free online web and mobile security class.
Stars: ✭ 12,246 (+70.44%)
Mutual labels:  education, hacking, xss, web-security
Reconftw
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
Stars: ✭ 974 (-86.44%)
Mutual labels:  hacking, pentest, xss
Pythem
pentest framework
Stars: ✭ 1,060 (-85.25%)
Mutual labels:  hacking, pentest, xss
Keye
Keye is a reconnaissance tool that was written in Python with SQLite3 integrated. After adding a single URL, or a list of URLs, it will make a request to these URLs and try to detect changes based on their response's body length.
Stars: ✭ 101 (-98.59%)
Mutual labels:  hacking, pentest, bug-bounty
Sublert
Sublert is a security and reconnaissance tool which leverages certificate transparency to automatically monitor new subdomains deployed by specific organizations and issued TLS/SSL certificate.
Stars: ✭ 699 (-90.27%)
Mutual labels:  hacking, pentest, bug-bounty
Pidrila
Python Interactive Deepweb-oriented Rapid Intelligent Link Analyzer
Stars: ✭ 125 (-98.26%)
Mutual labels:  hacking, pentest, bug-bounty
diwa
A Deliberately Insecure Web Application
Stars: ✭ 32 (-99.55%)
Mutual labels:  education, xss, web-security
Xspear
Powerfull XSS Scanning and Parameter analysis tool&gem
Stars: ✭ 583 (-91.89%)
Mutual labels:  hacking, pentest, xss
Payloads
Git All the Payloads! A collection of web attack payloads.
Stars: ✭ 2,862 (-60.17%)
Mutual labels:  hacking, pentest, xss
tugarecon
Pentest: Subdomains enumeration tool for penetration testers.
Stars: ✭ 142 (-98.02%)
Mutual labels:  hackers, bug-bounty, pentest
Offensive Docker
Offensive Docker is an image with the more used offensive tools to create an environment easily and quickly to launch assessment to the targets.
Stars: ✭ 328 (-95.43%)
Mutual labels:  hacking, pentest, bug-bounty
Penetration Testing Study Notes
Penetration Testing notes, resources and scripts
Stars: ✭ 461 (-93.58%)
Mutual labels:  hacking, pentest
Diamorphine
LKM rootkit for Linux Kernels 2.6.x/3.x/4.x/5.x (x86/x86_64 and ARM64)
Stars: ✭ 725 (-89.91%)
Mutual labels:  hacking, pentest
Thc Archive
All releases of the security research group (a.k.a. hackers) The Hacker's Choice
Stars: ✭ 474 (-93.4%)
Mutual labels:  hacking, pentest
Goohak
Automatically Launch Google Hacking Queries Against A Target Domain
Stars: ✭ 432 (-93.99%)
Mutual labels:  hacking, pentest
Solr Injection
Apache Solr Injection Research
Stars: ✭ 464 (-93.54%)
Mutual labels:  hacking, pentest
K8cscan
K8Cscan大型内网渗透自定义插件化扫描神器,包含信息收集、网络资产、漏洞扫描、密码爆破、漏洞利用,程序采用多线程批量扫描大型内网多个IP段C段主机,目前插件包含: C段旁注扫描、子域名扫描、Ftp密码爆破、Mysql密码爆破、Oracle密码爆破、MSSQL密码爆破、Windows/Linux系统密码爆破、存活主机扫描、端口扫描、Web信息探测、操作系统版本探测、Cisco思科设备扫描等,支持调用任意外部程序或脚本,支持Cobalt Strike联动
Stars: ✭ 693 (-90.35%)
Mutual labels:  hacking, pentest
Security Tools
Collection of small security tools, mostly in Bash and Python. CTFs, Bug Bounty and other stuff.
Stars: ✭ 509 (-92.92%)
Mutual labels:  hacking, bug-bounty
Payloadsallthethings
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
Stars: ✭ 32,909 (+358.02%)
Mutual labels:  hacking, pentest

Resources-for-Beginner-Bug-Bounty-Hunters

Intro

Current Version: 2021.01

There are a number of new hackers joining the community on a regular basis and more than often the first thing they ask is "How do I get started and what are some good resources?". As a hacker, there a ton of techniques, terminologies, and topics you need to familiarize yourself with to understand how an application works. Sera Brocious (@daeken), @0xAshFox, and I put these resources together in order to help new hackers with resources to learn the basics of Web Application Security.

We understand that there are more resources other than the ones we have listed and we hope to cover more resources in the near future!

If you are interested in learning about top bug bounty hunters in the community check out my Live Recon VODs.

NahamSec's Resource:

I have also put together my own resource:


Table of Contents


If you have more questions or suggestions, check out NahamSec's Discord!

Note that the project description data, including the texts, logos, images, and/or trademarks, for each open source project belongs to its rightful owner. If you wish to add or remove any projects, please contact us at [email protected].