cyberstars
cyberstars / purpose / bug-bounty

Tools for bug bounty

Independent disclosure programs.

73 tools indexed

All-in-one OSINT for any website.

ReconAnalyzeWeb apps
TypeScriptMIT

Next-generation web tech fingerprinter.

ReconScanWeb apps
RubyGPL-2.0

Advanced XSS detection suite.

ScanFuzzWeb apps
PythonMIT

Cyber-security all-in-one platform.

InterceptScanWeb appsNetworks
TypeScriptAGPL-3.0

Auto-prepare APKs for HTTPS inspection.

AnalyzeInterceptMobile apps
TypeScriptMIT

Crawl domains for endpoints, secrets, API keys and tokens.

ReconScanWeb apps
GoGPL-3.0

Fast recursive content discovery in Rust.

FuzzReconWeb apps
RustMIT

ffuf

Fast web fuzzer written in Go.

FuzzScanWeb apps
GoMIT

Find leaked secrets via GitHub search.

ReconSource codeWeb apps
PythonMIT

gori

Terminal HTTP intercepting proxy and web pentest toolkit.

InterceptFuzzWeb apps
CrystalApache-2.0

Check which sites an email address is registered on

ReconWeb apps
PythonGPL-3.0

Fast HTTP toolkit.

ReconScanWeb apps
GoMIT

Test and exploit JWT vulnerabilities.

ExploitAnalyzeWeb apps
PythonCC-BY-SA-3.0

Interactive HTTPS proxy.

InterceptAnalyzeWeb appsNetworks
PythonMIT

Frida-based Android intent interception for security research

InterceptAnalyzeMobile apps
PythonGPL-3.0

Red-team prompts, agents and RAGs.

ScanFuzzWeb appsSource code
TypeScriptMIT

ptai

AI pentest tool that re-runs every exploit to verify it.

AutomateScanWeb apps
PythonMIT

Automated reconnaissance framework for web applications

ReconScanWeb appsNetworks
PythonGPL-3.0

Automated recon and web vulnerability-scanning framework.

ReconScanWeb appsNetworks
ShellMIT

Scan ServiceNow instances for unauthenticated data exposure

ScanReconWeb appsCloud
GoMIT

Automatic SQL injection and database takeover.

ExploitScanWeb apps
PythonGPL-2.0

E-mail and subdomain harvester.

ReconWeb appsNetworks
PythonGPL-2.0

WAF fingerprinting.

ReconScanWeb apps
PythonBSD-3-Clause

Historical URLs from the Wayback Machine.

ReconWeb apps
GoMIT