4ARMED / sri-checkLinks
Python script for finding resource tags without subresource integrity.
☆39Updated 5 months ago
Alternatives and similar repositories for sri-check
Users that are interested in sri-check are comparing it to the libraries listed below
Sorting:
- Identify IP addresses owned by public cloud providers☆126Updated last year
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆139Updated 4 years ago
- Dependency Combobulator☆94Updated last year
- Target practice for ffuf☆69Updated 4 years ago
- A compilation of network scanning strategies to find vulnerable devices☆73Updated 3 years ago
- Paramalyzer - Burp extension for parameter analysis of large-scale web application penetration tests.☆34Updated 3 years ago
- Take domains on stdin and output them on stdout if they get resolved☆32Updated 3 years ago
- ☆23Updated 3 years ago
- Reconnaissance tool for GitLab and GitHub organizations☆51Updated 2 years ago
- Scan all possible TLD's for a given domain name☆83Updated 4 years ago
- Extensive code infrastructure for finding unintended information leaks in files, git repositories and much more.☆28Updated 3 years ago
- ☆90Updated 3 years ago
- A bash script that automates the scanning of a target network for HTTP resources through XXE☆37Updated 5 years ago
- OWASP Foundation Web Respository☆36Updated 4 years ago
- Tools for auditing WAFS☆19Updated 3 years ago
- An example of a mis-configured Rails application release under MIT license.☆21Updated 2 years ago
- swagroutes is a command-line tool that extracts and lists API routes from Swagger files in YAML or JSON format.☆61Updated 2 years ago
- Bypassing AWS WAF using a single ';'☆39Updated 7 years ago
- Documentation of Semgrep: a fast, open-source, static analysis tool.☆47Updated last week
- Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool☆24Updated 4 years ago
- A repository of the 10 million live most popular websites☆44Updated 2 years ago
- Static analysis of wordpress plugins☆61Updated 4 years ago
- A custom built DNS bruteforcer with multi-threading, and handling of bad resolvers.☆57Updated 3 years ago
- MyOpenVDP is a free web application to install a vulnerability disclosure policy or a vulnerability disclosure program on your assets. (V…☆31Updated last year
- Simple S3 Bucket Testing Software☆31Updated 4 years ago
- Contains all my research and content produced regarding the log4shell vulnerability☆31Updated 3 years ago
- multiple password 'asher using Python’s hashlib☆15Updated 4 years ago
- A tool to parse, deduplicate, and query multiple port scans.☆59Updated 2 years ago
- Scanner to identify dangling DNS records and subdomain takeovers☆50Updated last year
- A very vulnerable implementation of a GraphQL API.☆61Updated 4 years ago