How this analysis was created: This summary and feature list were written by an AI model that read the project's README and public documentation pages. Each feature links to the documentation it came from; stars, license and language come straight from the GitHub API. The model does not read the source code, and the analysis is refreshed when the project is re-analysed. Learn more on our About page.
AllAboutBugBounty is a curated collection of bug bounty techniques and payloads for web application security testing. It serves as a reference resource covering common web vulnerabilities and exploitation methods for security researchers, providing a structured approach to identifying and exploiting web application security flaws in bug bounty programs. The repository covers a wide range of attack categories including authentication bypass, cross-site scripting injection, server-side request forgery, web cache poisoning, and business logic abuse. It includes techniques for bypassing access co
This project is a GitHub secret scanner and dorking tool designed to identify leaked credentials and private keys within repositories. It functions as an API reconnaissance utility that uses curated search queries and automated dorks to locate sensitive data across public and enterprise GitHub instances. The tool enables security vulnerability research and enterprise auditing by targeting both public cloud instances and private enterprise installations via configurable base URLs. It utilizes token-based authentication to access private repository content and bypass API rate limits. The syste
HowToHunt is a bug bounty hunting knowledge base and a structured guide for web application penetration testing. It provides a research methodology for organizing security testing procedures and validating application behaviors against known vulnerability patterns. The project features a curated library of security flaws and reconnaissance techniques. It organizes security testing into modular playbooks, checklists, and categorical vulnerability mappings to align specific exploitation techniques with target weaknesses. The repository covers a systematic sequence of information gathering task
Scraping and listing text and image searches on Google, Bing, DuckDuckGo, Baidu, Yahoo japan.
Modern CLI for exploring vulnerability data with powerful search, filtering, and analysis capabilities.
The main features of projectdiscovery/cvemap are: Reconnaissance and Dorking, Vulnerability Research.
Open-source alternatives to projectdiscovery/cvemap include: daffainfo/allaboutbugbounty — AllAboutBugBounty is a curated collection of bug bounty techniques and payloads for web application security testing.… techgaun/github-dorks — This project is a GitHub secret scanner and dorking tool designed to identify leaked credentials and private keys… kathanp19/howtohunt — HowToHunt is a bug bounty hunting knowledge base and a structured guide for web application penetration testing. It… blacknon/pydork — Scraping and listing text and image searches on Google, Bing, DuckDuckGo, Baidu, Yahoo japan. chalker/notes — Some public notes. c3n7ral051nt4g3ncy/webosint — W3b0s1nt (WebOSINT) is a Python tool/script for passive Domain Intelligence gathering.