Complete Security Testing Checklist

Comprehensive guides for web, API, cloud, and AI/LLM security testing

Test OAuth login functionality

Bug Bounty Tools

Popular reconnaissance and security testing tools from the community

Reconnaissance Frameworks

Comprehensive automation frameworks for bug bounty hunters

Bheem

3k

Automation framework for reconnaissance and vulnerability scanning

View on GitHub

3klcon

500+

Automated reconnaissance tool for bug bounty hunters

View on GitHub

Sudomy

1.8k

Subdomain enumeration tool with passive and active scanning

View on GitHub

Osmedeus

5.3k

Fully automated offensive security framework for reconnaissance

View on GitHub

FinalRecon

2.1k

All-in-one web reconnaissance tool with modular design

View on GitHub

reNgine

7.4k

Automated reconnaissance framework with web interface

View on GitHub

Rock-ON

400+

Automated reconnaissance and vulnerability scanning suite

View on GitHub

recon-pipeline

1.1k

Automated reconnaissance pipeline using docker

View on GitHub

OneForAll

8.9k

Powerful subdomain collection tool

View on GitHub

chomp-scan

500+

Fast and flexible web application security scanner

View on GitHub

ReconPi

1.5k

Lightweight recon tool for Raspberry Pi

View on GitHub

HydraRecon

300+

Comprehensive reconnaissance framework for security researchers

View on GitHub

lazyrecon

2.4k

Automated reconnaissance wrapper script

View on GitHub

Sn1per

8k

Automated pentest framework for offensive security

View on GitHub

Rapidscan

1.3k

Multi-tool web vulnerability scanner

View on GitHub

Subdomain Enumeration

Specialized tools for discovering and enumerating subdomains

Amass

11.9k

In-depth attack surface mapping and asset discovery

View on GitHub

Sublist3r

9.5k

Fast subdomain enumeration tool for penetration testers

View on GitHub

Crobat

1.5k

Rapid Recon API for project Sonar

View on GitHub

Chaos

800+

Go client to communicate with Chaos DNS dataset

View on GitHub

Subfinder

10.2k

Fast passive subdomain enumeration tool

View on GitHub

Altdns

1.8k

Generates permutations, alterations and mutations of subdomains

View on GitHub

ShuffleDNS

1.3k

Wrapper around massdns for bruteforcing subdomains

View on GitHub

Assetfinder

3.1k

Find domains and subdomains related to a given domain

View on GitHub

Waybackurls

3.5k

Fetch URLs from the Wayback Machine

View on GitHub

Github-subdomains

1.2k

Find subdomains on GitHub

View on GitHub

DNScan

1.1k

Fast DNS scanner and subdomain enumerator

View on GitHub

Gobuster

9.8k

Directory/File, DNS and VHost busting tool in Go

View on GitHub

Knock

3.9k

Subdomain scan with virustotal and wordlist

View on GitHub

Aiodnsbrute

800+

Async DNS brute force utility

View on GitHub

Dmut

900+

A tool to perform permutations, mutations and alteration of subdomains in golang

View on GitHub

Subdomain3

400+

Subdomain scanner with high-speed multi-threaded

View on GitHub

Findomain

3.3k

The fastest and cross-platform subdomain enumerator

View on GitHub

Deserialization Testing

Tools for detecting and exploiting deserialization vulnerabilities

ysoserial

9.7k

Proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization

View on GitHub

Java-Deserialization-Scanner

800+

Burp Suite plugin to detect and exploit Java deserialization vulnerabilities

View on GitHub

jexboss

1.7k

JBoss (and others Java Deserialization Vulnerabilities) Verification and Exploitation Tool

View on GitHub

festin

900+

FestIn - S3 Bucket Weakness Discovery

View on GitHub

bucky

500+

Security testing tool for S3 buckets

View on GitHub

Made with ❤️ by Harinder Singh