A list of useful payloads and bypass for Web Application Security and Pentest/CTF
-
Updated
Mar 16, 2026 - Python
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
This repository is maintained by Omar Santos (@santosomar) and includes thousands of resources related to ethical hacking, bug bounties, digital forensics and incident response (DFIR), AI security, vulnerability research, exploit development, reverse engineering, and more. Also check: https://hackertraining.org
SafeLine is a self-hosted WAF(Web Application Firewall) / reverse proxy to protect your web apps from attacks and exploits.
Source code for Hacker101.com - a free online web and mobile security class.
A vulnerability scanner for container images and filesystems
Yi Kuan Chang Ting Zi Yan De Wan Shan De An Quan Ping Gu Gong Ju ,Zhi Chi Chang Jian web An Quan Wen Ti Sao Miao He Zi Ding Yi poc | Shi Yong Zhi Qian Wu Bi Xian Yue Du Wen Dang
A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.
Gather and update all available and newest CVEs with their PoC.
PoC auto collect from GitHub.
Collection of methodology and test case for various web vulnerabilities.
A list of web application security
All about bug bounty (bypasses, payloads, and etc)
Open Source Vulnerability Management Platform
SpringBoot Xiang Guan Lou Dong Xue Xi Zi Liao ,Li Yong Fang Fa He Ji Qiao He Ji ,Hei He An Quan Ping Gu check list
Dalfox is a powerful open-source XSS scanner and utility focused on automation.
A phone number can reveal whether a device is active, in standby or offline (and more). This PoC demonstrates how delivery receipts + RTT timing leak sensitive device-activity patterns. (WhatsApp / Signal)
This repository contains the scanner component for Greenbone Community Edition.
Exphub[Lou Dong Li Yong Jiao Ben Ku ] Bao Gua Webloigc, Struts2, Tomcat, Nexus, Solr, Jboss, DrupalDe Lou Dong Li Yong Jiao Ben ,Zui Xin Tian Jia CVE-2020-14882, CVE-2020-11444, CVE-2020-10204, CVE-2020-10199, CVE-2020-1938, CVE-2020-2551, CVE-2020-2555, CVE-2020-2883, CVE-2019-17558, CVE-2019-6340
Advanced vulnerability scanning with Nmap NSE
Add a description, image, and links to the vulnerability topic page so that developers can more easily learn about it.
To associate your repository with the vulnerability topic, visit your repo's landing page and select "manage topics."