A list of useful payloads and bypass for Web Application Security and Pentest/CTF
-
Updated
Aug 27, 2026 - Python
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
Qiushi-Skill: Build agents that investigate first, focus on the main contradiction, validate in practice, and keep pushing until the work is actually done. 求是Skill——从经典唯物辩证法与实践哲学中提炼出一条总原则和九大方法论工具武装AI大脑。
A minimalist command line knowledge base manager
Everything for pentest. | 渗透测试知识库,以 AI Agent 可执行的格式沉淀安全方法论。
Methodology for faithfully cloning any website (static / React / WebGL) — without copying AI-hallucinated code. Real source first.
Organize your API security assessment by using MindAPI. It's free and open for community collaboration.
Prompt Driven Development (PDD): The Last Programming Language™. Prompt files are source; code is generated output.
These patterns document how to apply open source principles and practices for software development within the confines of an organization - aka InnerSource.
Security Mindmap that could be useful for the infosec community when doing pentest, bug bounty or red-team assessments.
Shellcode injection technique. Given as C++ header, standalone Rust program or library.
聂·基层运行逻辑 · Agent Skill:基于聂辉华《基层中国的运行逻辑》的方法论工具箱(不含原书全文)
An Obsidian plugin to view and manage your tasks from whole vault using much efficient boards using various methodologies.
SAW — SAFe Agentic Workflow AI Agent Harness for Multi-Agent Team Workflows Built on SAFe methodology (Scaled Agile Framework), adapted for AI agent teams (Now With AI-DLC!) Works for any team with repeatable processes: Software, Marketing, Research, Legal, Operations.
Some great resources to gather OSINT on Email Addresses & Usernames. Alternatively check the exposure of your Email & Username.
How To approach recon on real targets — from passive enumeration to origin IP discovery. Covers tools, automation, and the logic behind each phase.
Aiming to be a fully transparent company. All information about source{d} and what it's like to work here.
An engineering team in a box for Claude Code — 12 specialized agents, 15 automation hooks, and the P7/P9/P10 methodology.
OSVVM Utility Library: AlertLogPkg, CoveragePkg, RandomPkg, ScoreboardGenericPkg, MemoryPkg, TbUtilPkg, TranscriptPkg, ...
Cyber Security Notes, Methodology, Resources and Tips
To associate your repository with the methodology topic, visit your repo's landing page and select "manage topics."