Bug Bounty Open Source Projects
Browse 157 Bug Bounty open source projects, ranked by GitHub stars. Find the most popular Bug Bounty tools and libraries.
Hack-with-Github/Awesome-Hacking
A collection of various awesome lists for hackers, pentesters and security researchers
Metrics details
| Stars | 116,474 |
maurosoria/dirsearch
Web path scanner
Metrics details
| Stars | 14,521 |
nahamsec/Resources-for-Beginner-Bug-Bounty-Hunters
A list of resources for those interested in getting started in bug bounties
Metrics details
| Stars | 12,119 |
yogeshojha/rengine
reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous monitoring, backed by a database, and simple yet intuitive User Interface. reNgine makes it easy for penetration testers to gather reconnaissance with minimal configuration and with the help of reNgine's correlation, it just makes recon effortless.
Metrics details
| Stars | 8,746 |
six2dez/reconftw
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
Metrics details
| Stars | 7,866 |
LasCC/HackTools
The all-in-one browser extension for offensive security professionals 🛠
Metrics details
| Stars | 6,893 |
j3ssie/osmedeus
A Modern Orchestration Engine for Security
Metrics details
| Stars | 6,484 |
djadmin/awesome-bug-bounty
A comprehensive curated list of available Bug Bounty & Disclosure Programs and Write-ups.
Metrics details
| Stars | 5,767 |
pry0cc/axiom
The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf, masscan, nuclei, meg and many more!
Metrics details
| Stars | 4,408 |
skerkour/black-hat-rust
Applied offensive security with Rust - https://kerkour.com/black-hat-rust
Metrics details
| Stars | 4,366 |
zan8in/afrog
A Security Tool for Bug Bounty, Pentest and Red Teaming.
Metrics details
| Stars | 4,342 |
ngalongc/bug-bounty-reference
Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature
Metrics details
| Stars | 4,224 |
freedomofpress/securedrop
GitHub repository for the SecureDrop whistleblower platform. Do not submit tips here!
Metrics details
| Stars | 3,864 |
dwisiswant0/awesome-oneliner-bugbounty
A collection of awesome one-liner scripts especially for bug bounty tips.
Metrics details
| Stars | 3,164 |
sa7mon/S3Scanner
Scan for misconfigured S3 buckets across S3-compatible APIs!
Metrics details
| Stars | 3,154 |
danieldurnea/FBI-tools
🕵️ OSINT Tools for gathering information and actions forensics 🕵️
Metrics details
| Stars | 2,573 |
kpcyrd/sn0int
Semi-automatic OSINT framework and package manager
Metrics details
| Stars | 2,488 |
inonshk/31-days-of-API-Security-Tips
This challenge is Inon Shkedy's 31 days API Security Tips.
Metrics details
| Stars | 2,240 |
tom0li/collection-document
Collection of quality safety articles. Awesome articles.
Metrics details
| Stars | 2,109 |
haccer/subjack
DNS Takeover tool written in Go
Metrics details
| Stars | 2,101 |
nsonaniya2010/SubDomainizer
A tool to find subdomains and interesting things hidden inside, external Javascript files of page, folder, and Github.
Metrics details
| Stars | 1,877 |
xalgord/Massive-Web-Application-Penetration-Testing-Bug-Bounty-Notes
A comprehensive guide for web application penetration testing and bug bounty hunting, covering methodologies, tools, and resources for identifying and exploiting vulnerabilities.
Metrics details
| Stars | 1,838 |
wagiro/BurpBounty
Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the active and passive scanner by means of personalized rules through a very intuitive graphical interface.
Metrics details
| Stars | 1,809 |
j3ssie/metabigor
OSINT tools and more but without API key
Metrics details
| Stars | 1,657 |
trickest/inventory
Asset inventory of over 800 public bug bounty programs.
Metrics details
| Stars | 1,593 |
0xHJK/dumpall
一款信息泄漏利用工具,适用于.git/.svn/.DS_Store泄漏和目录列出
Metrics details
| Stars | 1,582 |
0xPugazh/One-Liners
A collection of awesome one-liners for bug bounty hunting.
Metrics details
| Stars | 1,577 |
nikitastupin/clairvoyance
Obtain GraphQL API schema even if the introspection is disabled
Metrics details
| Stars | 1,494 |
Cyber-Guy1/API-SecurityEmpire
API Security Project aims to present unique attack & defense methods in API Security field
Metrics details
| Stars | 1,441 |
taielab/awesome-hacking-lists
A curated collection of top-tier penetration testing tools and productivity utilities across multiple domains. Join us to explore, contribute, and enhance your hacking toolkit!
Metrics details
| Stars | 1,365 |
Uniswap/v3-periphery
🦄 🦄 🦄 Peripheral smart contracts for interacting with Uniswap v3
Metrics details
| Stars | 1,331 |
projectdiscovery/public-bugbounty-programs
Community curated list of public bug bounty and responsible disclosure programs.
Metrics details
| Stars | 1,321 |
h4r5h1t/webcopilot
An automation tool that enumerates subdomains then filters out xss, sqli, open redirect, lfi, ssrf and rce parameters and then scans for vulnerabilities.
Metrics details
| Stars | 1,292 |
KathanP19/JSFScan.sh
Automation for javascript recon in bug bounty.
Metrics details
| Stars | 1,103 |
lord-alfred/ipranges
🔨 List all IP ranges from: Google (Cloud & GoogleBot), Bing (Bingbot), Amazon (AWS), Microsoft, Oracle (Cloud), GitHub, Facebook (Meta), OpenAI (GPTBot) and other with daily updates.
Metrics details
| Stars | 1,099 |
disclose/diodb
Open-source vulnerability disclosure and bug bounty program database
Metrics details
| Stars | 1,073 |
yassineaboukir/sublert
Sublert is a security and reconnaissance tool which leverages certificate transparency to automatically monitor new subdomains deployed by specific organizations and issued TLS/SSL certificate.
Metrics details
| Stars | 1,034 |
trickest/resolvers
The most exhaustive list of reliable DNS resolvers.
Metrics details
| Stars | 1,029 |
Ice3man543/SubOver
A Powerful Subdomain Takeover Tool
Metrics details
| Stars | 966 |
reconmap/reconmap
Reconmap is a collaboration-first security operations platform for infosec teams and MSSPs, enabling end‑to‑end engagement management, from reconnaissance through execution and reporting. With built-in command automation, output parsing, and AI‑assisted summaries, it delivers faster, more structured, and high‑quality security assessments.
Metrics details
| Stars | 941 |
bl4de/security-tools
My collection of various security tools created mostly in Python and Bash. For CTFs and Bug Bounty.
Metrics details
| Stars | 924 |
ehrishirajsharma/SwiftnessX
A cross-platform note-taking & target-tracking app for penetration testers.
Metrics details
| Stars | 915 |
Drew-Alleman/DataSurgeon
Quickly Extracts IP's, Email Addresses, Hashes, Files, Credit Cards, Social Security Numbers and a lot More From Text
Metrics details
| Stars | 903 |
ghostsecurity/reaper
Live validation proxy tool for testing web app vulnerabilities
Metrics details
| Stars | 877 |
vysecurity/DomLink
A tool to link a domain with registered organisation names and emails, to other domains.
Metrics details
| Stars | 848 |
jaiswalakshansh/Facebook-BugBounty-Writeups
Collection of Facebook Bug Bounty Writeups
Metrics details
| Stars | 840 |
ivan-sincek/penetration-testing-cheat-sheet
Work in progress...
Metrics details
| Stars | 834 |
payloadbox/xxe-injection-payload-list
🎯 XML External Entity (XXE) Injection Payload List
Metrics details
| Stars | 825 |
utkusen/socialhunter
crawls the website and finds broken social media links that can be hijacked
Metrics details
| Stars | 775 |
aaaguirrep/offensive-docker
Offensive Docker is an image with the more used offensive tools to create an environment easily and quickly to launch assessment to the targets.
Metrics details
| Stars | 767 |
B3nac/InjuredAndroid
A vulnerable Android application that shows simple examples of vulnerabilities in a ctf style.
Metrics details
| Stars | 760 |
dsopas/assessment-mindset
Security Mindmap that could be useful for the infosec community when doing pentest, bug bounty or red-team assessments.
Metrics details
| Stars | 755 |
hueristiq/xurlfind3r
A command-line utility designed to discover URLs for a given domain in a simple, efficient way. It works by gathering information from a variety of passive sources, meaning it doesn't interact directly with the target but instead gathers data that is already publicly available.
Metrics details
| Stars | 711 |
r3curs1v3-pr0xy/vajra
Vajra is a highly customizable target and scope based automated web hacking framework to automate boring recon tasks and same scans for multiple target during web applications penetration testing.
Metrics details
| Stars | 703 |
knassar702/scant3r
ScanT3r - Module based Bug Bounty Automation Tool
Metrics details
| Stars | 685 |
nyancrimew/goop
Yet another tool to dump a git repository from a website, focused on as-complete-as-possible dumps and handling weird edge-cases.
Metrics details
| Stars | 653 |
AnLoMinus/Bug-Bounty
Bug Bounty ~ Awesomes | Books | Cheatsheets | Checklists | Tools | Wordlists | More
Metrics details
| Stars | 648 |
eslam3kl/SQLiDetector
Simple python script supported with BurpBouty profile that helps you to detect SQL injection "Error based" by sending multiple requests with 14 payloads and checking for 152 regex patterns for different databases.
Metrics details
| Stars | 637 |
iamthefrogy/frogy
My subdomain enumeration script. It's unique in the way it is built upon.
Metrics details
| Stars | 622 |
Li4n0/revsuit
RevSuit is a flexible and powerful reverse connection platform designed for receiving connection from target host in penetration.
Metrics details
| Stars | 564 |
