Skip to content
View hex0wn's full-sized avatar
🏠
Working from home<img>[aa">xxx](a">xxx)
🏠
Working from home<img>[aa">xxx](a">xxx)

Block or report hex0wn

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

Allow AI to wade through complex OpenAPIs using Simple Language

TypeScript 853 92 Updated Oct 26, 2025

Convert Any OpenAPI V3 API to MCP Server

Go 574 70 Updated Apr 3, 2025

Exploits for CNEXT (CVE-2024-2961), a buffer overflow in the glibc's iconv()

Python 497 60 Updated Sep 30, 2024

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

OCaml 13,414 826 Updated Nov 21, 2025

Pwn stuff.

PHP 1,805 392 Updated May 31, 2022
Go 556 74 Updated Mar 27, 2025

Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3

Python 2,037 327 Updated Jan 2, 2024

🕵️‍♂️ Offensive Google framework.

Python 18,128 1,543 Updated Oct 4, 2025

Custom Selenium Chromedriver | Zero-Config | Passes ALL bot mitigation systems (like Distil / Imperva/ Datadadome / CloudFlare IUAM)

Python 12,033 1,303 Updated Jul 5, 2025

A repository containing research regarding various Anti-DDoS systems. (CloudFlare)

271 28 Updated Aug 25, 2023

Bypass Coudflare bot protection using Cloudflare Workers

JavaScript 791 109 Updated Jul 27, 2021

This experimetal fuzzer is meant to be used for API in-memory fuzzing.

JavaScript 577 90 Updated Jun 22, 2020

🐛 A list of writeups from the Google VRP Bug Bounty program

Python 1,371 232 Updated Nov 11, 2025

Firewall bypass script based on DNS history records. This script will search for DNS A history records and check if the server replies for that domain. Handy for bugbounty hunters.

Shell 1,258 260 Updated Sep 5, 2022

Multi-layer Recurrent Neural Networks (LSTM, GRU, RNN) for character-level language models in Torch

Lua 11,894 2,628 Updated Oct 24, 2023

Directory/File, DNS and VHost busting tool written in Go

Go 12,943 1,513 Updated Nov 21, 2025

Viewgen is a ViewState tool capable of generating both signed and encrypted payloads with leaked validation keys

Python 648 88 Updated Feb 1, 2025

📦 Make security testing of K8s, Docker, and Containerd easier.

Go 4,459 589 Updated Nov 5, 2025

Security oriented software fuzzer. Supports evolutionary, feedback-driven fuzzing based on code coverage (SW and HW based)

C 3,278 529 Updated Sep 14, 2025

A collection of android security related resources

Shell 8,977 1,522 Updated Oct 29, 2025

A collection of various awesome lists for hackers, pentesters and security researchers

101,103 9,709 Updated Jan 18, 2025

Awesome Frida - A curated list of Frida resources http://www.frida.re/ (https://github.com/frida/frida)

3,360 363 Updated Jan 5, 2024

ssl_logger based on frida

Python 584 148 Updated Jul 29, 2022

Community curated list of public bug bounty and responsible disclosure programs.

Go 1,248 381 Updated Nov 10, 2025

POC for GitLabs Authenticated RCE in version 11.4.7 community edition

Python 13 13 Updated Feb 8, 2021

Static page generator for documenting GraphQL Schema

TypeScript 1,567 133 Updated Jan 31, 2023

Electron JS Browser To Find XSS Vulnerabilities Automatically

JavaScript 748 126 Updated Mar 30, 2021

PoC for CVE-2021-3156 (sudo heap overflow)

C 436 108 Updated Apr 14, 2022

Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the active and passive scanner by means of personalized rules thro…

Java 1,757 341 Updated Apr 26, 2024
Next