BBVA / apicheck
The DevSecOps toolset for REST APIs
☆274Updated 2 years ago
Alternatives and similar repositories for apicheck
Users that are interested in apicheck are comparing it to the libraries listed below
Sorting:
- A tool geared towards pentesting APIs using OpenAPI definitions.☆175Updated 2 years ago
- Material for the training "Developing Burp Suite Extensions – From Manual Testing to Security Automation"☆352Updated 4 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆103Updated last year
- A simple web app that helps developers understand the ASVS requirements.☆158Updated 2 months ago
- Automate security tests using Burp Suite.☆226Updated 11 months ago
- vulnerable single sign on☆147Updated 9 months ago
- ADAPT is a tool that performs automated Penetration Testing for WebApps.☆190Updated 5 years ago
- An organizational asset and vulnerability management tool, with Jira integration, designed for generating application security reports.☆181Updated 2 weeks ago
- 🏰 A Python script for AWS S3 bucket enumeration.☆143Updated 2 years ago
- ☆173Updated 2 years ago
- Finding exposed secrets and personal data in GitLab☆198Updated 6 months ago
- Mixeway is security orchestrator for vulnerability scanners which enable easy plug in integration with CICD pipelines. MixewayHub project…☆109Updated last year
- Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Applica…☆480Updated 6 years ago
- secretz, minimizing the large attack surface of Travis CI☆325Updated 2 years ago
- Hayat is a script for report and analyze Google Cloud Platform resources.☆80Updated 5 years ago
- Imperva's customizable API attack tool takes an API specification as an input, generates and runs attacks that are based on it as an outp…☆472Updated 2 years ago
- Container Security Verification Standard☆58Updated 5 years ago
- Find cloud assets that no one wants exposed 🔎 ☁️☆344Updated 4 years ago
- Monitoring GitHub for sensitive data shared publicly☆66Updated 3 years ago
- A step-by-step walkthrough of CloudGoat 2.0 scenarios.☆134Updated 5 years ago
- All-in-one tool for managing vulnerability reports from AppSec pipelines☆106Updated 2 years ago
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆139Updated 3 years ago
- AWS Extender (Cloud Storage Tester) is a Burp plugin to assess permissions of cloud storage containers on AWS, Google Cloud and Azure.☆249Updated 3 years ago
- The ZAP Heads Up Display (HUD)☆263Updated 3 months ago
- Benchmarking repo for secrets scanning☆231Updated 9 months ago
- REST/JSON API to the Burp Suite security tool.☆560Updated 11 months ago
- an asynchronous target enumeration tool☆244Updated 2 years ago
- A script to extract subdomains/emails for a given domain using SSL/TLS certificate dataset on Censys☆152Updated 2 years ago
- Web app authorisation coverage scanning☆237Updated 2 years ago
- OWASP Cloud Security - Enabling conversations through threat and control stories☆180Updated 6 years ago