Hi, I'm Kathan Patel Security Enthusist I am a Computer Engineer who is currently studying from National Forensic Sciences University, who has a keen interest in Web Application Security and…
Hi, I'm Kathan Patel
Security Enthusist
I am a Computer Engineer who is currently studying from National Forensic Sciences University, who has a keen interest in Web Application Security and who enjoy doing bug bounties.
Coming to the practical implementation, I love making scripts in Bash and tools in golang to automate processes that take lots of time while pentesting web applications. On the way of doing that made me think to write blogs on the hunting Bugs so that I can share my experience with other enthusiasts



More about me...
go
package main
type Me struct{
Pronouns string
Code string
BestAndFavoriteSkill string
}
func main() {
me := &Me{
Pronouns: "He/Him",
Code: "Bash and Golang",
BestAndFavoriteSkill: "Web Hacking :D"
}
_ = me
}
----
HowToHunt
Collection of methodology and test case for various web vulnerabilities.
★ 7.1k 1y agoExplain → -
JSFScan.sh
Automation for javascript recon in bug bounty.
Shell ★ 1.1k 2y agoExplain → -
Gxss ▣
A tool to check a bunch of URLs that contain reflecting params.
Go ★ 600 1y agoExplain → -
gaussrf
Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl and Filter Urls With OpenRedirection or SSRF Parameters.
Shell ★ 175 5y agoExplain → -
BreachedDataScraper
Search breached data on private nodes, darkweb, internet, end-to-end channels
★ 149 6y agoExplain → -
protoscan
Prototype Pollution Scanner
Go ★ 143 5y agoExplain → -
portscan.sh
All in one port scanning script.
Shell ★ 68 6y agoExplain → -
waybackfetch
Tool for fetching all the available waybackmachine snapshot urls
Go ★ 26 1y agoExplain → -
OpenBB-Scope
OpenBugBounty - https://www.openbugbounty.org/ programs list
★ 23 5y agoExplain → -
Python_For_Pentester
Programs I Made while learning python for pentesters.
Python ★ 21 3y agoExplain → -
bash_script_templates
Some Templates for Bash Scripting
Shell ★ 18 3y agoExplain → -
KathanP19
No description.
★ 15 4y agoExplain → -
Bheem ⑂
No description.
Shell ★ 12 3y agoExplain → -
hackerone_wordlist ⑂
The wordlists that have been compiled using disclosed reports at HackerOne bug bounty platform
★ 11 6y agoExplain → -
wordlists ⑂
Wordlists for Fuzzing
★ 11 6y agoExplain → -
SecurityTesting ⑂
No description.
★ 10 5y agoExplain → -
pwndb ⑂
Search for leaked credentials
★ 7 5y agoExplain → -
reconftw ⑂
ReconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
Shell ★ 7 5y agoExplain → -
Bug-bounty ⑂
Ressources for bug bounty hunting
★ 6 6y agoExplain → -
AndroidCTF
Different Android Challenges I solved.
★ 6 4y agoExplain → -
bruteforce-lists ⑂
Some files for bruteforcing certain things.
★ 6 5y agoExplain → -
scripthunter ⑂
Tool to find JavaScript files on Websites
★ 6 5y agoExplain → -
Portscanner
A Simple Port Scanner with Multi-Threading And User Define Port Range
Python ★ 6 5y agoExplain → -
learnwebscraping
this are some web scrapers i built during learning web scraping
Python ★ 6 5y agoExplain → -
Magic-CheckList-for-Web-Applications ⑂
Web Security Checklist (Bug Bounty & Pentesting)
★ 5 6y agoExplain → -
15_Python_Projects ⑂
No description.
★ 5 4y agoExplain → -
xssXD
No description.
Go ★ 5 5y agoExplain → -
frogy-subdomain-enumeration ⑂
My subdomain enumeration
Python ★ 5 5y agoExplain → -
Garud ⑂
An automation tool that scans sub-domains, sub-domain takeover and then filters out xss, ssti, ssrf and more injection point parameters.
Shell ★ 5 5y agoExplain → -
Parse_Apache_Log
Simple Python Script to Parse Apache Log, Get all Unique IPs and Urls visited by that IP.
Python ★ 4 4y agoExplain → -
web-cache-deception-checker ⑂
Tool is to check for Cache Deception Attack Both For Authenticated and UnAuthenticated Pages
★ 3 9y agoExplain → -
mildew ⑂
Dotmil subdomain discovery tool that scrapes domains from official DoD website directories and certificate transparency logs
★ 3 5y agoExplain → -
Oralyzer ⑂
Open Redirection Analyzer
Python ★ 3 5y agoExplain → -
sillydadddy.github.io ⑂
No description.
Ruby ★ 3 5y agoExplain → -
analyzeJS ⑂
A tools for JavaScript Recon
★ 3 5y agoExplain → -
WayRobots ⑂
Tool to find stored robots.txt files from the past
★ 3 6y agoExplain → -
SpotiHook ⑂
A Spotify hook that cracks DRM protection and allows to download songs.
★ 3 6y agoExplain → -
cazador_unr ⑂
Hacking tools
★ 2 5y agoExplain → -
hostinjector ⑂
Multithreaded Host Header Redirection Scanner
★ 2 6y agoExplain → -
Sublist3r ⑂
Fast subdomains enumeration tool for penetration testers
Python ★ 2 6y agoExplain → -
GOAD ⑂
game of active directory
★ 2 4y agoExplain → -
rb-recon ⑂
No description.
★ 2 5y agoExplain → -
learning-golang
Small program made while learning golang.
Go ★ 2 5y agoExplain → -
cvebase.com ⑂
cvebase is a community-driven vulnerability data platform to discover the world's top security researchers and their latest disclosed vulnerabilities & PoCs
★ 2 5y agoExplain → -
Bluto ⑂
DNS Recon | Brute Forcer | DNS Zone Transfer | DNS Wild Card Checks | DNS Wild Card Brute Forcer | Email Enumeration | Staff Enumeration | Compromised Account Checking
Python ★ 2 6y agoExplain → -
autoRecon ⑂
This tool is for automate the initial things that we usually do in daily pentesting. So you can focus more on the main target.
★ 2 6y agoExplain → -
LazyRecon ⑂
An automated approach to performing recon for bug bounty hunting and penetration testing.
Shell ★ 1 6y agoExplain → -
Presentation_Scripts_PPTs
No description.
C ★ 1 1y agoExplain → -
AttackSurfaceMapper ⑂
AttackSurfaceMapper is a tool that aims to automate the reconnaissance process.
★ 1 6y agoExplain → -
tko-subs ⑂
A tool that can help detect and takeover subdomains with dead DNS records
★ 1 6y agoExplain → -
Subdomain ⑂
Hacks For Subdomain Enumeration
★ 1 6y agoExplain → -
Sitadel ⑂
Web Application Security Scanner
★ 0 6y agoExplain → -
SubEnum ⑂
bash script for Subdomain Enumeration
★ 0 6y agoExplain → -
ethereum_clustering ⑂
No description.
★ 0 7y agoExplain → -
DOD-Recon ⑂
Recon for Department of Defense HackerOne program
★ 0 7y agoExplain → -
Webinar ⑂
Mahawiki webinar resources and speakers
★ 0 6y agoExplain → -
Project-X ⑂
Reconnaisance Tool
★ 0 6y agoExplain → -
gau ⑂
Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.
★ 0 6y agoExplain → -
bbht ⑂
A script to set up a quick Ubuntu 17.10 x64 box with tools I use.
★ 0 6y agoExplain →
No repos match these filters.