// LATEST
Developer Tools
Mining Apache's server-status: A Security Researcher's Field Guide
Automation
LazyRecon: The Bash Script That Chains 12 Security Tools Into One Reconnaissance Pipeline
Developer Tools
genkiroid/cert: Inspect TLS Certificates Without the OpenSSL Ceremony
Automation
Hunting .DS_Store Files at Scale: How internetwache's Scanner Exploits macOS Metadata Leaks
Developer Tools
JSScanner: The Bug Bounty Hunter's Swiss Army Knife for JavaScript Reconnaissance
Developer Tools
ffufplus: When Shell Scripts Make Better Security Tools Than Frameworks
Cybersecurity
Jaeles: Building a Signature-Based Web Scanner That Speaks YAML
Cybersecurity
Building Custom Query String Fuzzers: Inside qsfuzz's Rule-Based Vulnerability Detection
Automation
Inception: The Web Scanner That Deliberately Slows Down to Evade WAF Detection
Cybersecurity
Inside Nuclei Templates: How 12,000 YAML Files Became the Lingua Franca of Vulnerability Detection
Cybersecurity
Inside Nuclei: How YAML Templates Became a Crowdsourced Vulnerability Database
Automation
Spartan: The Shell Script That Chains Your Recon Tools (And Why That's Both Good and Bad)
Cybersecurity
Inside pedrib/PoC: A Master Class in Vulnerability Research and Exploit Development
Cybersecurity
Building a GitHub Trending Bot: What 115 Stars Taught Us About Scraping, Storage, and Social Growth
Cybersecurity
GitHacker: Exploiting Exposed .git Directories When Directory Listings Are Disabled
Developer Tools
cidrmerge: The 50-Line Python Script That Cleans Up Network ACLs
Developer Tools
subjs: How a 300-Line Go Tool Became Essential in the Bug Bounty Toolkit
Cybersecurity
gau: Mining Web Archives for Security Reconnaissance Without Touching the Target
Developer Tools
urlscan-go: A Minimalist Go Client for Automated URL Threat Analysis
Cybersecurity
OneForAll: The Subdomain Enumeration Framework That Aggregates 100+ Data Sources
Automation
Cheetah: How Parallel Password Submission Breaks Webshell Brute-Force Performance Barriers
Cybersecurity
httpx: The Swiss Army Knife of HTTP Reconnaissance That Actually Scales
Cybersecurity
GitHub as an Attack Surface: Automating Reconnaissance with github-search
Cybersecurity