fuzz.txt
bugbounty-cheatsheet
fuzz.txt | bugbounty-cheatsheet | |
---|---|---|
1 | 3 | |
2,790 | 5,561 | |
- | - | |
6.2 | 0.0 | |
about 2 months ago | 8 months ago | |
Do What The F*ck You Want To Public License | Creative Commons Attribution Share Alike 4.0 |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
fuzz.txt
bugbounty-cheatsheet
What are some alternatives?
fuzzdb - Dictionary of attack patterns and primitives for black-box application fault injection and resource discovery.
API-Security-Checklist - Checklist of the most important security countermeasures when designing, testing, and releasing your API
WordList
wstg - The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
Bug-Bounty-Wordlists - A repository that includes all the important wordlists used while bug hunting.
sql-injection-payload-list - 🎯 SQL Injection Payload List
git-cloud-storage - I'm using this as cloud storage for my web development to access files directly link.
command-injection-payload-list - 🎯 Command Injection Payload List
ssti-payloads - 🎯 Server Side Template Injection Payloads
can-i-take-over-xyz - "Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.
Infosec_Reference - An Information Security Reference That Doesn't Suck; https://rmusser.net/git/admin-2/Infosec_Reference for non-MS Git hosted version.
Application-Security-Engineer-Interview-Questions - Some of the questions which i was asked when i was giving interviews for Application/Product Security roles. I am sure this is not an exhaustive list but i felt these questions were important to be asked and some were challenging to answer