👨💻 About me My name is Luke Stephens. I'm a dad, husband and hacker! I am the founder of a cyber security consultancy called Haksec, but this account is for…
👨💻 About me
My name is Luke Stephens. I'm a dad, husband and hacker! I am the founder of a cyber security consultancy called Haksec, but this account is for my personal projects.
🧐 Find Me
- 💻 Website: hakluke.com
- 🎥 YouTube: hakluke
- 🐦 Twitter: @hakluke
- 📚 Medium: https://medium.com/@hakluke
-
how-to-exit-vim
Below are some simple methods for exiting vim.
★ 7.2k 3mo agoExplain → -
hakrawler
Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application
Go ★ 5.1k 1y agoExplain → -
hakrevdns
Small, fast tool for performing reverse DNS lookups en masse.
Go ★ 1.6k 1y agoExplain → -
weaponised-XSS-payloads
XSS payloads designed to turn alert(1) into P1
JavaScript ★ 1.4k 2y agoExplain → -
hakoriginfinder
Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!
Go ★ 1.1k 2mo agoExplain → -
haktrails
Golang client for querying SecurityTrails API data
Go ★ 595 5mo agoExplain → -
hakip2host
hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.
Go ★ 459 4y agoExplain → -
hakcheckurl
Takes a list of URLs and returns their HTTP response codes
Go ★ 403 2y agoExplain → -
bug-bounty-standards
A list of edge cases that occur in bug bounty programs, conversations on how they should be handled. The goal is to standardise the way that specific situations are handled in bug bounties.
★ 237 4y agoExplain → -
haklistgen
Turns any junk text into a usable wordlist for brute-forcing.
Go ★ 227 2y agoExplain → -
hakscale
Distribute ordinary bash commands over many systems
Go ★ 166 3y agoExplain → -
haktldextract
Extract domains/subdomains from URLs en masse
Go ★ 139 2y agoExplain → -
hakfindinternaldomains
Feed it a list of subdomains, it will resolve them and tell you which ones are internal
Go ★ 91 4y agoExplain → -
hakcron
Easily schedule commands to run multiple times at set intervals (like a cronjob, but with one command)
Go ★ 84 5y agoExplain → -
hakq
A basic golang server/client for distributing tasks over multiple systems.
Go ★ 39 6y agoExplain → -
hakrevshell
No description.
Shell ★ 38 5y agoExplain → -
dnstrace ⑂
DNS resolution tracing tool
Go ★ 36 5y agoExplain → -
hakcertstream
Basic implementation of certstream to print new subdomains and domains
Go ★ 36 5y agoExplain → -
hakstore
No description.
Go ★ 30 2y agoExplain → -
hakluke
No description.
★ 22 4y agoExplain → -
Internal-Pentest-Playbook ⑂
Internal Network Penetration Test Playbook
★ 20 5y agoExplain → -
hakaxfr
Attempt zone transfers on domains
Go ★ 18 5y agoExplain → -
haksecuritytxt
Takes a list of domains as the input, checks if they have a security.txt, outputs the results.
Go ★ 16 6y agoExplain → -
hakcsp
Return domains in CSP headers in http response
Go ★ 16 4y agoExplain → -
hakjoke
Gets joke from icanhazdadjoke.com, prints it
Go ★ 13 4y agoExplain → -
payload-generator ⑂
No description.
PHP ★ 12 8y agoExplain → -
XSS
Xss payloads
JavaScript ★ 11 7y agoExplain → -
----svg-onload-alert---
jaVasCript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=alert() )//%0D%0A%0d%0a//</stYle/</titLe/</teXtarEa/</scRipt/--!>\x3csVg/<sVg/oNloAd=alert()//>\x3e
HTML ★ 11 5y agoExplain → -
theHarvester ⑂
E-mails, subdomains and names Harvester - OSINT
★ 11 6y agoExplain → -
helloworlds
hello world in different languages
Assembly ★ 10 2y agoExplain → -
hacks ⑂
Repo of useful scripts
★ 9 6y agoExplain → -
react2shell-lab
No description.
TypeScript ★ 8 6mo agoExplain → -
Markdown-XSS-Payloads ⑂
XSS payloads for exploiting Markdown syntax
★ 8 5y agoExplain → -
hakawshostnames
Generate a list of all AWS hostnames
Go ★ 8 5y agoExplain → -
tldextract ⑂
Extract root domain, subdomain name, and tld from a url, using the Public Suffix List.
Go ★ 8 4y agoExplain → -
WindowsExploits ⑂
Windows exploits, mostly precompiled.
Python ★ 7 9y agoExplain → -
hakurlencode
(en|de)code urls from the CLI
Go ★ 7 4y agoExplain → -
SecLists ⑂
SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs, sensitive data patterns, fuzzing payloads, web shells, and many more.
★ 7 6y agoExplain → -
templates ⑂
Repository to house markdown templates for researchers
★ 6 3y agoExplain → -
nuclei-templates ⑂
Community curated list of template files for the nuclei engine to find security vulnerability and fingerprinting the targets.
★ 6 6y agoExplain → -
Wappalyzer ⑂
Cross-platform utility that uncovers the technologies used on websites.
JavaScript ★ 6 7y agoExplain → -
gh-dork ⑂
Github dorking tool
★ 5 4y agoExplain → -
Weaver ⑂
Multithreaded Web-Directory Bruteforcer, Python 3.x
Python ★ 5 7y agoExplain → -
dumpcn ⑂
Get all the CNs from a list of domains
Go ★ 5 4y agoExplain → -
gzipsplit
split lines of text into multiple gzip files
Go ★ 5 4y agoExplain → -
hakgzsplit
Split text files into gzip files with x lines
Go ★ 5 4y agoExplain → -
copy-excel-paste-markdown ⑂
Copy a table in Excel (or other spreadsheet programs) and paste it as a Markdown table
★ 5 8y agoExplain → -
wordlesolver
Little python script + dictionary to help solve Wordle puzzles
Python ★ 4 4y agoExplain → -
webanalyze ⑂
Port of Wappalyzer (uncovers technologies used on websites) in Go to automate scanning.
★ 4 6y agoExplain → -
dirsearch-go ⑂
A Go implementation of dirsearch.
★ 4 7y agoExplain → -
sendportal ⑂
Open-source self-hosted email marketing. Manage your own newsletters at a fraction of the cost.
★ 3 3y agoExplain → -
FakeKoala
No description.
★ 3 6y agoExplain → -
fabric ⑂
fabric is an open-source framework for augmenting humans using AI.
★ 2 2y agoExplain → -
diodb-api
No description.
Go ★ 2 5y agoExplain → -
Unicode-Mapping-on-Domain-names ⑂
No description.
★ 2 5y agoExplain → -
cent ⑂
Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one place
Go ★ 2 4y agoExplain → -
react2shell-lab-vercel
No description.
TypeScript ★ 1 6mo agoExplain → -
RealmsOfCyber.github.io
website
★ 1 1y agoExplain → -
excalidraw ⑂
Virtual whiteboard for sketching hand-drawn like diagrams
★ 1 4y agoExplain → -
security-creators ⑂
No description.
Vue ★ 1 5y agoExplain → -
MS17-010-EternalBlue-WinXP-Win10 ⑂
EternalBlue Metasploit Port to various Windows Versions from Windows XP SP2 up to Windows 10 Pro
Ruby ★ 1 7y agoExplain → -
anew ⑂
A tool for adding new lines to files, skipping duplicates
Go ★ 1 4y agoExplain → -
tldomains ⑂
Tiny library to parse the subdomain, domain, and tld extension from a host string
Go ★ 1 5y agoExplain → -
assetnote ⑂
Push notifications for passive DNS data
JavaScript ★ 1 10y agoExplain → -
g-naf-full-sqlite ⑂
G-NAF Sqlite Docker image
★ 1 4y agoExplain → -
vsftpd-2.3.4-infected ⑂
repository contains the infected version of vsftpd 2.3.4.
C ★ 0 2y agoExplain → -
discloseio-site ⑂
The current website at https://disclose.io.
★ 0 3y agoExplain → -
difflib ⑂
No description.
Go ★ 0 4y agoExplain → -
slack-go-webhook ⑂
Go Library to send messages to Slack via Webhooks
★ 0 7y agoExplain →
No repos match these filters.