A knowledge base of best practices for application security
☆36Aug 10, 2023Updated 3 years ago
Alternatives and similar repositories for application-security-handbook
Users that are interested in application-security-handbook are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆21May 25, 2025Updated last year
- Evilginx2-Phishlets☆22Nov 21, 2025Updated 9 months ago
- ☆10Apr 6, 2024Updated 2 years ago
- Burp extension to increment a parameter in each active scan request☆13Aug 6, 2026Updated last month
- Active Directory Penetration Testing for Red Teams☆57Oct 5, 2024Updated last year
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- ☆39Aug 8, 2021Updated 5 years ago
- Vulnerable webapp testbed☆26May 11, 2016Updated 10 years ago
- Insecure Android Application for testing Biometric bypasses☆15Aug 5, 2022Updated 4 years ago
- Notes for the CRTO exam☆10May 22, 2022Updated 4 years ago
- A list of cheat sheets for application security☆524Jul 3, 2023Updated 3 years ago
- Beautify Nessus scan output☆12Dec 2, 2023Updated 2 years ago
- Files used for various testing methodologies.☆12Apr 15, 2026Updated 4 months ago
- A Burpsuite extension written in Python to perform basic validation fuzzing☆11Oct 7, 2022Updated 3 years ago
- Mirage is a PoC memory evasion technique that relies on a vulnerable VBS enclave to hide shellcode within VTL1.☆108Feb 25, 2025Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Exploit for CVE-2024-20767 - Adobe ColdFusion☆34Dec 19, 2024Updated last year
- PowerSploit - A PowerShell Post-Exploitation Framework☆12May 11, 2015Updated 11 years ago
- Burp extension to generate multi-step CSRF POC.☆31Sep 23, 2019Updated 6 years ago
- vulntechfinder is a powerful security tool that automates vulnerability scanning based on technology stack detection. It intelligently pr…☆20Aug 23, 2026Updated 2 weeks ago
- Walk the files in a directory through a series of steps☆18Aug 29, 2026Updated last week
- Monitors and curates bug-bounty related repositories weekly (Monday).☆82Aug 31, 2026Updated last week
- PEN-300 collection to help you on your exam.☆14Apr 19, 2022Updated 4 years ago
- A Kubernetes service reverse proxy that requires no configuration☆13Oct 4, 2015Updated 10 years ago
- ASSVD☆17Dec 19, 2025Updated 8 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Find subdomains by searching public certificate records☆16Jun 11, 2024Updated 2 years ago
- A full example report☆11Jul 23, 2019Updated 7 years ago
- Burp Suite extension for parsing Swagger web service definition files☆20Jul 15, 2025Updated last year
- Lots of POC Codes & Preparation materials, scripts, discovery processes in there.☆16Feb 8, 2024Updated 2 years ago
- ☆19Jun 25, 2020Updated 6 years ago
- This repository is intended for sharing files/tools/tutorials..etc that related to eWPTXv2 from eLearnSecurity☆14Oct 18, 2020Updated 5 years ago
- PoC of CVE-2022-22978 vulnerability in Spring Security framework☆13Jun 4, 2022Updated 4 years ago
- Vulnerable code snippets repository showcasing different vulnerabilities to practice code analysis skills.☆23Sep 4, 2023Updated 3 years ago
- Tool to download IP ranges of CDN providers for bug bounties☆14Jul 24, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- This repository holds a target infrastructure you can use for running the nimbostratus tools.☆24Mar 9, 2015Updated 11 years ago
- Created by High-Tech Bridge, the Purposefully Insecure and Vulnerable Android Application (PIVAA) replaces outdated DIVA for benchmark of…☆105May 27, 2020Updated 6 years ago
- In-depth internals, my personal notes, example codes and projects. Includes - Thousands of codes, OOP, Concurrency, Parallelism, Gorouti…☆11Nov 25, 2020Updated 5 years ago
- Chameleon Wordlists☆15Sep 13, 2022Updated 3 years ago
- Prototype-Pollution-Lab to chain the vulnerabilities between multiple accounts.☆13Sep 11, 2021Updated 4 years ago
- Curated UTF-8 URL-encoded character dictionary for injection testing, fuzzing, and bypass techniques against web applications and APIs, f…☆14Sep 20, 2021Updated 4 years ago
- ☆71Jun 16, 2022Updated 4 years ago