Skip to main content

🐢 A curated list of Web Security materials and resources. With repository stars⭐ and forks🍴

22
GitHub Stars
420
Curated Resources
16
Categories
11 hours ago
Last Refreshed
DigestsForumsIntroductionEvasionsTricksBrowser ExploitationPoCsCheetsheetsToolsSocial Engineering DatabaseBlogsTwitter UsersPracticesCommunityMiscellaneousFailure handling

Use this list with your AI agent

Add the Context Awesome MCP server to Claude, Cursor, or any MCP client, then ask:

"Show me osint resources from fucking-awesome-web-security"

Installation instructions β†’

What's inside

Blogs

Introduction

Miscellaneous

Tools

  • A2SVAuditing

    Auto Scanning to SSL Vulnerability by

  • AcraPreventing

    Client-side encryption engine for SQL databases, with strong selective encryption, SQL injections prevention and intrusion detection by 🌎

  • AQUATONEReconnaissance

    Tool for Domain Flyovers by

  • ARS3NALPenetration Testing

    Offline-first, self-hosted pentest & bug-bounty arsenal - searchable payloads, a click-to-build command generator, GTFOBins, wordlists, an embedded CyberChef, reverse shells and per-vulnerability checklists, with a live static demo - by

  • AstraPenetration Testing

    Automated Security Testing For REST API's by

  • aws_pwnPenetration Testing

    A collection of AWS penetration testing junk by

Practices

  • alert(1) to winXSS

    Series of XSS challenges - Written by 🌎

  • BadLibraryApplication

    Vulnerable web application for training - Written by

  • CloudGoatAWS

    Rhino Security Labs' "Vulnerable by Design" AWS infrastructure setup tool - Written by

  • FLAWSAWS

    Amazon AWS CTF challenge - Written by 🌎

  • HackxorApplication

    Realistic web application hacking game - Written by 🌎

Browser Exploitation

Showing a sample of 420 resources. View the full list on GitHub β†’