0xn3va / application-security-handbookLinks
A knowledge base of best practices for application security
☆28Updated 2 years ago
Alternatives and similar repositories for application-security-handbook
Users that are interested in application-security-handbook are comparing it to the libraries listed below
Sorting:
- Payloads for Attacking Large Language Models☆114Updated 6 months ago
- A research project to add some brrrrrr to Burp☆196Updated 10 months ago
- A tool to quickly do keyword searches over Gitlab and Github for OSINT & bug bounty recon☆244Updated 2 years ago
- CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).☆149Updated 8 months ago
- Archive Alchemist is a tool for creating specially crafted archives to test extraction vulnerabilities.☆223Updated 4 months ago
- Vulnerable code snippets with fixes for Web2, Web3, API, iOS, Android and Infrastructure-as-Code (IaC)☆164Updated last year
- ☆182Updated last year
- A tool to scrape the AWS ranges looking for a keyword in SSL certificate data.☆236Updated last year
- ☆219Updated last year
- ☆81Updated 2 years ago
- 🔍A cutting edge context aware GraphQL API fuzzing tool!☆155Updated 2 weeks ago
- The Template Injection Playground allows to test a large number of the most relevant template engines for template injection possibilitie…☆54Updated 4 months ago
- A web CTF for training developers in bug hunting and secure coding!☆101Updated 11 months ago
- An automated GitHub Actions-based crawler that fetches and updates public scopes from popular bug bounty platforms (like Hackerone/Bugcro…☆66Updated this week
- Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files☆228Updated last month
- ☆101Updated 3 weeks ago
- Prompt Injections Everywhere☆171Updated last year
- A Django web application for curating Bug Bounty educational Videos☆98Updated 2 years ago
- ☆347Updated 5 months ago
- All of my eJPT notes☆11Updated last year
- Chrome extension for automating CSPT discovery☆124Updated 2 weeks ago
- SourceGPT - prompt manager and source code analyzer built on top of ChatGPT as the oracle☆109Updated 2 years ago
- HTTP redirection service designed to help bypass SSRF filters. Integrated with Burp Suite.☆55Updated 5 months ago
- Your bloodhound for hidden info in those JS files.☆17Updated last year
- Collection of all previous 1337UP CTF challenges.☆77Updated 11 months ago
- Recon MindMap (RMM)☆167Updated last year
- A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Sec…☆313Updated 4 months ago
- jxscout superpowers JavaScript analysis for security researchers☆313Updated 3 months ago
- ☆42Updated last month
- Finds graphql queries in javascript files☆66Updated last year