API-Security / APISandbox
Pre-Built Vulnerable Multiple API Scenarios Environments Based on Docker-Compose.
☆401Updated 2 years ago
Alternatives and similar repositories for APISandbox:
Users that are interested in APISandbox are comparing it to the libraries listed below
- TerraformGoat is HXSecurity research lab's "Vulnerable by Design" multi cloud deployment tool.☆584Updated 2 years ago
- a lightweight, flexible and novel open source poc verification framework☆235Updated 2 years ago
- Remote Code Injection In Log4j☆464Updated 3 years ago
- EPSS & VEDAS Score Aggregator for CVEs☆237Updated this week
- OpenSource Poc && Vulnerable-Target Storage Box.☆681Updated 2 years ago
- RevSuit is a flexible and powerful reverse connection platform designed for receiving connection from target host in penetration.☆535Updated last year
- Log4j jndi injects the Payload generator☆486Updated 3 years ago
- Afuzz is an automated web path fuzzing tool for the Bug Bounty projects.☆304Updated last year
- Vulnerabilities of Goby supported with exploitation.☆722Updated last week
- SSRF plugin for burp Automates SSRF Detection in all of the Request☆578Updated 4 years ago
- BurpBounty 魔改版本☆415Updated 3 years ago
- PoC collection of Atlassian(Jira, Confluence, Bitbucket) products and Jenkins, Solr, Nexus☆175Updated 2 weeks ago
- Here you can find mostly all disclosed h1 reports☆350Updated 3 years ago
- EasyPen is a GUI program which helps pentesters do target discovery, vulnerability scan and exploitation☆613Updated 2 years ago
- Nuclei plugin for BurpSuite☆1,246Updated 7 months ago
- 极致攻 防实验室 nuclei 检测 POC☆618Updated last year
- k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.☆289Updated 3 years ago
- A tiny project for generating SnakeYAML deserialization payloads☆591Updated 6 years ago
- Totally Insecure Web Application Project (TIWAP)☆172Updated last year
- SSRFuzz is a tool to find Server Side Request Forgery vulnerabilities, with CRLF chaining capabilities☆182Updated 4 years ago
- Proxylogon & Proxyshell & Proxyoracle & Proxytoken & All exchange server history vulns summarization :)☆526Updated last year
- APIKit:Discovery, Scan and Audit APIs Toolkit All In One.☆2,072Updated last year
- 对权限绕过自动化bypass的burpsuite插件☆900Updated 10 months ago
- 80+ Gadgets(30 More than ysoserial). JNDI-Injection-Exploit-Plus is a tool for generating workable JNDI links and provide background serv…☆789Updated 10 months ago
- Msmap is a Memory WebShell Generator.☆582Updated 2 years ago
- XSSMap 是一款基于 Python3 开发用于检测 XSS 漏洞的工具☆263Updated 4 years ago
- 🔍 Github CVE POC 信息监控推送 🚀☆329Updated this week
- ☆121Updated 2 years ago
- A Burp Extender for checking for struts 2 RCE vulnerabilities.☆285Updated 11 months ago
- CobaltStrike <= 4.7.1 RCE☆383Updated 2 years ago