Skip to content
View kingthorin's full-sized avatar
🇨🇦
Open Source !!
🇨🇦
Open Source !!

Organizations

@zaproxy

Block or report kingthorin

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

A curated collection of awesome things related to status badges

Markdown 849 62 Updated Dec 26, 2025

The CLI for working with JSON Schema. Covers formatting, linting, testing, bundling, and more for both local development and CI/CD pipelines

Shell 219 24 Updated Jan 9, 2026

A web browser with dynamic data-flow tracking enabled in the Javascript engine and DOM, based on Mozilla Firefox (https://github.com/mozilla-firefox/firefox). It can be used to identify insecure da…

JavaScript 153 20 Updated Jan 7, 2026
TypeScript 625 122 Updated Apr 9, 2025

Hide secret messages in plain sight using invisible Unicode variation selectors!

HTML 3 Updated Aug 27, 2025

The official repository of Mozilla's Firefox web browser.

JavaScript 10,943 808 Updated Jan 9, 2026

BBT - Bug Bounty Tools (examples💡)

Python 1,866 473 Updated Apr 5, 2024

A curated list of VULNERABLE APPS and SYSTEMS which can be used as PENETRATION TESTING PRACTICE LAB.

1,226 200 Updated Jun 6, 2025

Damn Vulnerable Restaurant is an intentionally vulnerable Web API game for learning and training purposes dedicated to developers, ethical hackers and security engineers.

Python 876 160 Updated Jan 3, 2026

BChecks collection for Burp Suite Professional and Burp Suite DAST

758 134 Updated Oct 22, 2025

CSPBypass.com, a tool designed to help ethical hackers bypass restrictive Content Security Policies (CSP) and exploit XSS (Cross-Site Scripting) vulnerabilities on sites where injections are blocke…

HTML 534 84 Updated Dec 18, 2025

A high performance go implementation of Wappalyzer Technology Detection Library

Go 952 153 Updated Jan 4, 2026

HTTP Archive fork of Wappalyzer

JavaScript 96 45 Updated Jan 5, 2026

ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.

PHP 2,221 378 Updated Jan 8, 2026

Unicode characters that will translate a single character to multiple characters in domain names or TLD's

49 1 Updated Nov 23, 2024

Using django to simulate SQL injection and HTTP Parameter Pollution

1 Updated Mar 18, 2022

A python script that finds endpoints in JavaScript files

Python 4,241 651 Updated Apr 13, 2024

Awesome Vulnerable Applications

1,324 200 Updated Dec 5, 2025

Chapar is a simple and easy to use api testing tools aims to help developers to test their api endpoints. it support http and grpc protocols.

Go 679 38 Updated Jan 8, 2026

A fast tool to scan CRLF vulnerability written in Go

Go 1,504 148 Updated Jan 3, 2026

The OWASP OFFAT tool autonomously assesses your API for prevalent vulnerabilities, though full compatibility with OAS v3 is pending. The project remains a work in progress, continuously evolving to…

Python 656 88 Updated Sep 19, 2025

Sasori is a dynamic web crawler powered by Puppeteer, designed for lightning-fast endpoint discovery.

JavaScript 147 16 Updated Jul 23, 2024

BugBountyTips

JavaScript 414 85 Updated Jul 31, 2025

CORS Misconfiguration Scanner

Python 1,492 186 Updated Sep 17, 2022

A collection of HAR files for developing against the HAR spec

JavaScript 6 2 Updated Mar 4, 2025

Complex payload encoder

Go 240 26 Updated Jan 20, 2024

Automagically reverse-engineer REST APIs via capturing traffic

HTML 9,194 343 Updated Dec 15, 2025
Java 2 1 Updated Jan 7, 2026
Python 134 61 Updated Jan 3, 2026
Next