Skip to content
View Cyberfallen's full-sized avatar
💭
IT Security Enthusiast
💭
IT Security Enthusiast

Block or report Cyberfallen

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse

Starred repositories

Showing results

Fast subdomains enumeration tool for penetration testers

Python 10,809 2,202 Updated Aug 2, 2024

Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more

Go 3,289 293 Updated Jan 20, 2026

A list of commands, scripts, resources, and more that I have gathered and attempted to consolidate for use as OSCP (and more) study material. Commands in 'Usefulcommands' Keepnote. Bookmarks and re…

C 2,721 760 Updated Jun 22, 2020

Droid LLM Hunter is a tool to scan for vulnerabilities in Android applications using Large Language Models (LLMs).

Python 83 14 Updated Feb 9, 2026

OSINT tools for Information gathering, Cybersecurity, Reverse searching, bugbounty, trust and safety, red team oprations and more.

Shell 2,127 243 Updated Feb 12, 2026

A phone number can reveal whether a device is active, in standby or offline (and more). This PoC demonstrates how delivery receipts + RTT timing leak sensitive device-activity patterns. (WhatsApp /…

TypeScript 4,668 636 Updated Dec 31, 2025

eBPF-based Networking, Security, and Observability

Go 23,679 3,608 Updated Feb 13, 2026

Cloudflare, Sucuri, Incapsula real IP tracker.

Python 1,759 236 Updated Jul 25, 2023

CasaOS - A simple, easy-to-use, elegant open-source Personal Cloud system.

Go 33,175 1,860 Updated Aug 6, 2025

WhatsApp tools for Android

Java 1,223 164 Updated Feb 9, 2026

This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter

3,233 748 Updated Feb 10, 2024

Self-contained script for cleaning forensic traces on Linux, macOS, and Windows.

Shell 291 26 Updated Jul 25, 2025

Fast passive subdomain enumeration tool.

Go 13,065 1,509 Updated Feb 11, 2026

The OWASP MASVS (Mobile Application Security Verification Standard) is the industry standard for mobile app security.

Python 2,330 627 Updated Dec 22, 2025

This Repository is a collection of different ethical hacking tools and malware's for penetration testing and research purpose written in python, ruby, rust, c++, go and c.

C 751 196 Updated Feb 3, 2026

Automation for javascript recon in bug bounty.

Shell 1,067 184 Updated Sep 9, 2023

🔍 Bug Bounty Search Engine - Advanced reconnaissance toolkit with 64+ Google dork queries organized into 10 categories for security researchers. Features subdomain discovery, exposed files detectio…

HTML 40 8 Updated Oct 6, 2025

HTTP Toolkit is a beautiful & open-source tool for debugging, testing and building with HTTP(S) on Windows, Linux & Mac 🎉 Open an issue here to give feedback or ask for help.

3,394 98 Updated Feb 4, 2026

Open-source security research tool for identifying origin IP exposure of websites protected by Cloudflare and similar reverse proxy services.

Python 2,094 290 Updated Jan 6, 2026

FlipperDroid is a Kotlin-based Android app that turns your smartphone into a powerful mobile cybersecurity toolkit, emulating Flipper Zero features like NFC, RFID, Bluetooth, BadUSB, and more.

Kotlin 386 25 Updated Aug 27, 2025

Depix is a PoC for a technique to recover plaintext from pixelized screenshots.

Python 3,952 291 Updated Apr 16, 2025

A Magisk, KernelSU and APatch module that enables unix-style (verbose) boot animation for Android devices

Shell 381 14 Updated Sep 24, 2025

An NFC research toolkit application for Android

Java 2,055 254 Updated Dec 12, 2025

The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.

8,836 1,551 Updated Feb 8, 2026

Simple, open source, lightweight and privacy-friendly web analytics alternative to Google Analytics.

Elixir 24,212 1,344 Updated Feb 13, 2026

Frida script bypass detect emulator using framgia library on Android application

JavaScript 12 5 Updated Nov 4, 2019

Noxer is a powerful Python script designed for automating Android penetration testing tasks within the Nox Player emulator.

JavaScript 286 44 Updated Jan 9, 2024

An extremely effective subdomain enumeration wordlist of 3,000,000 lines, crafted by harvesting SSL certs from the entire IPv4 space.

760 99 Updated Apr 4, 2023

A list of articles, videos, and tools related to the use of AI for OSINT.

193 15 Updated Nov 17, 2025
Next