3-day current streak·24-day longest streak
Hi there 👋 Application Security Engineer from Czechia. I focus on offensive security, bug bounty tooling, vulnerable apps, and practical DevSecOps automation. ---
-
awesome-bugbounty-tools ★ PINNED
A curated list of various bug bounty tools
★ 6.1k 2d agoExplain → -
awesome-vulnerable-apps ★ PINNED
Awesome Vulnerable Applications
★ 1.4k 18d agoExplain → -
xss2png ★ PINNED
PNG IDAT chunks XSS payload generator
Python ★ 215 3y agoExplain → -
dvwp ★ PINNED
Damn Vulnerable WordPress
PHP ★ 205 2y agoExplain → -
js-snitch ★ PINNED
Scans remote JavaScript files with Trufflehog + Semgrep to detect leaked secrets
Python ★ 145 1y agoExplain → -
XFFenum ★ PINNED
X-Forwarded-For [403 forbidden] enumeration
Python ★ 99 2y agoExplain → -
wp-update-confusion ▣
WordPress Plugin Update Confusion
Python ★ 67 4y agoExplain → -
XSSwagger
A simple Swagger-ui scanner that can detect old versions vulnerable to various XSS attacks
Python ★ 61 6y agoExplain → -
dkimsc4n
Asynchronous wordlist based DKIM scanner
Python ★ 57 5y agoExplain → -
BBClip
Bug Bounty Clipboard
JavaScript ★ 17 6y agoExplain → -
bugbountytip.com
Flask powered website to display tweets with a hashtag #bugbountytip
HTML ★ 16 6y agoExplain → -
h1_2_nuclei
Scan any HackerOne program with Nuclei
Python ★ 14 4y agoExplain → -
SpyPortal
Sniffing & geolocating saved SSIDs
Python ★ 10 4y agoExplain → -
old-repos-backup
Back-up of my old unmaintained GitHub repositories
Perl ★ 9 6y agoExplain → -
wp2burp
Intercept WordPress requests with Burp Suite
Shell ★ 9 4y agoExplain → -
XSSworm.dev
Self-replication contest
CSS ★ 6 5y agoExplain → -
vavkamil.cz
My personal blog at https://vavkamil.cz
HTML ★ 5 1mo agoExplain → -
web-security-notify
Telegram bot to notify about new Web Security Academy labs
Python ★ 5 5y agoExplain → -
r-bugbounty-automod
reddit.com/r/bugbounty AutoModerator config
★ 4 6y agoExplain → -
API-Keys-Snitch
Burp extension to detect & report exposed API keys as an Informative issue
Python ★ 4 1y agoExplain → -
openvpn_proton
OpenVPN / ProtonVPN
Python ★ 4 4y agoExplain → -
bb_tldr_bot
tldr; bot for r/bugbounty
Python ★ 4 3y agoExplain → -
xml-rpc-settings
Configure XML-RPC methods to increase the security of your website
PHP ★ 4 4y agoExplain → -
dvnc
Damn Vulnerable Nginx Config
Dockerfile ★ 3 5y agoExplain → -
pocket-cvss
Offline CVSS v3.1 base score calculator for Flipper Zero.
C ★ 2 2d agoExplain → -
vavkamil
No description.
★ 2 29d agoExplain → -
securitytxt.cz
https://securitytxt.cz/
TSQL ★ 1 6y agoExplain → -
appsecaudit.cz
AppSec Audit website at https://appsecaudit.cz
Shell ★ 0 1d agoExplain → -
BChecks ⑂
BChecks collection for Burp Suite Professional
★ 0 2y agoExplain → -
owasp-captchas
Solving CAPTCHAs for Fun
HTML ★ 0 3y agoExplain → -
S-rankCheck
Asynchronous S-rank check using seznam.cz RPC API
Python ★ 0 6y agoExplain →
No repos match these filters.