Bug Bounty Open Source Projects

Browse 157 Bug Bounty open source projects, ranked by GitHub stars. Find the most popular Bug Bounty tools and libraries.

Share your experience:✍️ Write a Post❓ Ask a Question
1-60 of 157 projects
116,474 stars

Hack-with-Github/Awesome-Hacking

A collection of various awesome lists for hackers, pentesters and security researchers

Metrics details
Stars116,474
14,521 stars

maurosoria/dirsearch

Web path scanner

Metrics details
Stars14,521
12,119 stars

nahamsec/Resources-for-Beginner-Bug-Bounty-Hunters

A list of resources for those interested in getting started in bug bounties

Metrics details
Stars12,119
8,746 stars

yogeshojha/rengine

reNgine is an automated reconnaissance framework for web applications with a focus on highly configurable streamlined recon process via Engines, recon data correlation and organization, continuous monitoring, backed by a database, and simple yet intuitive User Interface. reNgine makes it easy for penetration testers to gather reconnaissance with minimal configuration and with the help of reNgine's correlation, it just makes recon effortless.

Metrics details
Stars8,746
7,866 stars

six2dez/reconftw

reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities

Metrics details
Stars7,866
6,893 stars

LasCC/HackTools

The all-in-one browser extension for offensive security professionals 🛠

Metrics details
Stars6,893
6,484 stars

j3ssie/osmedeus

A Modern Orchestration Engine for Security

Metrics details
Stars6,484
5,767 stars

djadmin/awesome-bug-bounty

A comprehensive curated list of available Bug Bounty & Disclosure Programs and Write-ups.

Metrics details
Stars5,767
4,408 stars

pry0cc/axiom

The dynamic infrastructure framework for everybody! Distribute the workload of many different scanning tools with ease, including nmap, ffuf, masscan, nuclei, meg and many more!

Metrics details
Stars4,408
4,366 stars

skerkour/black-hat-rust

Applied offensive security with Rust - https://kerkour.com/black-hat-rust

Metrics details
Stars4,366
4,342 stars

zan8in/afrog

A Security Tool for Bug Bounty, Pentest and Red Teaming.

Metrics details
Stars4,342
4,224 stars

ngalongc/bug-bounty-reference

Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature

Metrics details
Stars4,224
3,864 stars

freedomofpress/securedrop

GitHub repository for the SecureDrop whistleblower platform. Do not submit tips here!

Metrics details
Stars3,864
3,164 stars

dwisiswant0/awesome-oneliner-bugbounty

A collection of awesome one-liner scripts especially for bug bounty tips.

Metrics details
Stars3,164
3,154 stars

sa7mon/S3Scanner

Scan for misconfigured S3 buckets across S3-compatible APIs!

Metrics details
Stars3,154
2,573 stars

danieldurnea/FBI-tools

🕵️ OSINT Tools for gathering information and actions forensics 🕵️

Metrics details
Stars2,573
2,488 stars

kpcyrd/sn0int

Semi-automatic OSINT framework and package manager

Metrics details
Stars2,488
2,240 stars

inonshk/31-days-of-API-Security-Tips

This challenge is Inon Shkedy's 31 days API Security Tips.

Metrics details
Stars2,240
2,109 stars

tom0li/collection-document

Collection of quality safety articles. Awesome articles.

Metrics details
Stars2,109
2,101 stars

haccer/subjack

DNS Takeover tool written in Go

Metrics details
Stars2,101
1,877 stars

nsonaniya2010/SubDomainizer

A tool to find subdomains and interesting things hidden inside, external Javascript files of page, folder, and Github.

Metrics details
Stars1,877
1,838 stars

xalgord/Massive-Web-Application-Penetration-Testing-Bug-Bounty-Notes

A comprehensive guide for web application penetration testing and bug bounty hunting, covering methodologies, tools, and resources for identifying and exploiting vulnerabilities.

Metrics details
Stars1,838
1,809 stars

wagiro/BurpBounty

Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the active and passive scanner by means of personalized rules through a very intuitive graphical interface.

Metrics details
Stars1,809
1,657 stars

j3ssie/metabigor

OSINT tools and more but without API key

Metrics details
Stars1,657
1,593 stars

trickest/inventory

Asset inventory of over 800 public bug bounty programs.

Metrics details
Stars1,593
1,582 stars

0xHJK/dumpall

一款信息泄漏利用工具,适用于.git/.svn/.DS_Store泄漏和目录列出

Metrics details
Stars1,582
1,577 stars

0xPugazh/One-Liners

A collection of awesome one-liners for bug bounty hunting.

Metrics details
Stars1,577
1,494 stars

nikitastupin/clairvoyance

Obtain GraphQL API schema even if the introspection is disabled

Metrics details
Stars1,494
1,441 stars

Cyber-Guy1/API-SecurityEmpire

API Security Project aims to present unique attack & defense methods in API Security field

Metrics details
Stars1,441
1,365 stars

taielab/awesome-hacking-lists

A curated collection of top-tier penetration testing tools and productivity utilities across multiple domains. Join us to explore, contribute, and enhance your hacking toolkit!

Metrics details
Stars1,365
1,331 stars

Uniswap/v3-periphery

🦄 🦄 🦄 Peripheral smart contracts for interacting with Uniswap v3

Metrics details
Stars1,331
1,321 stars

projectdiscovery/public-bugbounty-programs

Community curated list of public bug bounty and responsible disclosure programs.

Metrics details
Stars1,321
1,292 stars

h4r5h1t/webcopilot

An automation tool that enumerates subdomains then filters out xss, sqli, open redirect, lfi, ssrf and rce parameters and then scans for vulnerabilities.

Metrics details
Stars1,292
1,103 stars

KathanP19/JSFScan.sh

Automation for javascript recon in bug bounty.

Metrics details
Stars1,103
1,099 stars

lord-alfred/ipranges

🔨 List all IP ranges from: Google (Cloud & GoogleBot), Bing (Bingbot), Amazon (AWS), Microsoft, Oracle (Cloud), GitHub, Facebook (Meta), OpenAI (GPTBot) and other with daily updates.

Metrics details
Stars1,099
1,073 stars

disclose/diodb

Open-source vulnerability disclosure and bug bounty program database

Metrics details
Stars1,073
1,034 stars

yassineaboukir/sublert

Sublert is a security and reconnaissance tool which leverages certificate transparency to automatically monitor new subdomains deployed by specific organizations and issued TLS/SSL certificate.

Metrics details
Stars1,034
1,029 stars

trickest/resolvers

The most exhaustive list of reliable DNS resolvers.

Metrics details
Stars1,029
966 stars

Ice3man543/SubOver

A Powerful Subdomain Takeover Tool

Metrics details
Stars966
941 stars

reconmap/reconmap

Reconmap is a collaboration-first security operations platform for infosec teams and MSSPs, enabling end‑to‑end engagement management, from reconnaissance through execution and reporting. With built-in command automation, output parsing, and AI‑assisted summaries, it delivers faster, more structured, and high‑quality security assessments.

Metrics details
Stars941
924 stars

bl4de/security-tools

My collection of various security tools created mostly in Python and Bash. For CTFs and Bug Bounty.

Metrics details
Stars924
915 stars

ehrishirajsharma/SwiftnessX

A cross-platform note-taking & target-tracking app for penetration testers.

Metrics details
Stars915
903 stars

Drew-Alleman/DataSurgeon

Quickly Extracts IP's, Email Addresses, Hashes, Files, Credit Cards, Social Security Numbers and a lot More From Text

Metrics details
Stars903
877 stars

ghostsecurity/reaper

Live validation proxy tool for testing web app vulnerabilities

Metrics details
Stars877
848 stars

vysecurity/DomLink

A tool to link a domain with registered organisation names and emails, to other domains.

Metrics details
Stars848
840 stars

jaiswalakshansh/Facebook-BugBounty-Writeups

Collection of Facebook Bug Bounty Writeups

Metrics details
Stars840
834 stars

ivan-sincek/penetration-testing-cheat-sheet

Work in progress...

Metrics details
Stars834
825 stars

payloadbox/xxe-injection-payload-list

🎯 XML External Entity (XXE) Injection Payload List

Metrics details
Stars825
775 stars

utkusen/socialhunter

crawls the website and finds broken social media links that can be hijacked

Metrics details
Stars775
767 stars

aaaguirrep/offensive-docker

Offensive Docker is an image with the more used offensive tools to create an environment easily and quickly to launch assessment to the targets.

Metrics details
Stars767
760 stars

B3nac/InjuredAndroid

A vulnerable Android application that shows simple examples of vulnerabilities in a ctf style.

Metrics details
Stars760
755 stars

dsopas/assessment-mindset

Security Mindmap that could be useful for the infosec community when doing pentest, bug bounty or red-team assessments.

Metrics details
Stars755
711 stars

hueristiq/xurlfind3r

A command-line utility designed to discover URLs for a given domain in a simple, efficient way. It works by gathering information from a variety of passive sources, meaning it doesn't interact directly with the target but instead gathers data that is already publicly available.

Metrics details
Stars711
703 stars

r3curs1v3-pr0xy/vajra

Vajra is a highly customizable target and scope based automated web hacking framework to automate boring recon tasks and same scans for multiple target during web applications penetration testing.

Metrics details
Stars703
685 stars

knassar702/scant3r

ScanT3r - Module based Bug Bounty Automation Tool

Metrics details
Stars685
653 stars

nyancrimew/goop

Yet another tool to dump a git repository from a website, focused on as-complete-as-possible dumps and handling weird edge-cases.

Metrics details
Stars653
648 stars

AnLoMinus/Bug-Bounty

Bug Bounty ~ Awesomes | Books | Cheatsheets | Checklists | Tools | Wordlists | More

Metrics details
Stars648
637 stars

eslam3kl/SQLiDetector

Simple python script supported with BurpBouty profile that helps you to detect SQL injection "Error based" by sending multiple requests with 14 payloads and checking for 152 regex patterns for different databases.

Metrics details
Stars637
622 stars

iamthefrogy/frogy

My subdomain enumeration script. It's unique in the way it is built upon.

Metrics details
Stars622
564 stars

Li4n0/revsuit

RevSuit is a flexible and powerful reverse connection platform designed for receiving connection from target host in penetration.

Metrics details
Stars564
1-60 of 157 projects
Get A Weekly Email With Trending Bug Bounty Projects
Stay updated on Bug Bounty plus related topics you pick below.

Copyright 2018-2026 Awesome Open Source.  All rights reserved.