Luke Stephens (hakluke) (@hakluke)

Top repositories

1

how-to-exit-vim

Below are some simple methods for exiting vim.
6,773
star
2

hakrawler

Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application
Go
4,172
star
3

hakrevdns

Small, fast tool for performing reverse DNS lookups en masse.
Go
1,257
star
4

weaponised-XSS-payloads

XSS payloads designed to turn alert(1) into P1
JavaScript
1,249
star
5

hakoriginfinder

Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!
Go
772
star
6

haktrails

Golang client for querying SecurityTrails API data
Go
482
star
7

hakcheckurl

Takes a list of URLs and returns their HTTP response codes
Go
363
star
8

hakip2host

hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.
Go
359
star
9

bug-bounty-standards

A list of edge cases that occur in bug bounty programs, conversations on how they should be handled. The goal is to standardise the way that specific situations are handled in bug bounties.
220
star
10

haklistgen

Turns any junk text into a usable wordlist for brute-forcing.
Go
197
star
11

hakscale

Distribute ordinary bash commands over many systems
Go
149
star
12

haktldextract

Extract domains/subdomains from URLs en masse
Go
127
star
13

hakfindinternaldomains

Feed it a list of subdomains, it will resolve them and tell you which ones are internal
Go
89
star
14

hakcron

Easily schedule commands to run multiple times at set intervals (like a cronjob, but with one command)
Go
85
star
15

hakcertstream

Basic implementation of certstream to print new subdomains and domains
Go
38
star
16

hakq

A basic golang server/client for distributing tasks over multiple systems.
Go
38
star
17

hakrevshell

Shell
37
star
18

hakstore

Go
27
star
19

hakluke

18
star
20

hakcsp

Return domains in CSP headers in http response
Go
16
star
21

hakjoke

Gets joke from icanhazdadjoke.com, prints it
Go
13
star
22

hakaxfr

Attempt zone transfers on domains
Go
13
star
23

haksecuritytxt

Takes a list of domains as the input, checks if they have a security.txt, outputs the results.
Go
13
star
24

helloworlds

hello world in different languages
Assembly
12
star
25

----svg-onload-alert---

jaVasCript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=alert() )//%0D%0A%0d%0a//</stYle/</titLe/</teXtarEa/</scRipt/--!>\x3csVg/<sVg/oNloAd=alert()//>\x3e
HTML
11
star
26

XSS

Xss payloads
JavaScript
9
star
27

hakawshostnames

Generate a list of all AWS hostnames
Go
8
star
28

hakurlencode

(en|de)code urls from the CLI
Go
6
star
29

gzipsplit

split lines of text into multiple gzip files
Go
6
star
30

hakgzsplit

Split text files into gzip files with x lines
Go
5
star
31

wordlesolver

Little python script + dictionary to help solve Wordle puzzles
Python
5
star
32

vulnerable-code-examples

An unorganized batch of vulnerable code examples for use in my blogs, training, etc.
PHP
5
star
33

FakeKoala

3
star
34

diodb-api

Go
1
star