Bearer / bearer-rulesLinks
Rules for Bearer SAST
☆35Updated 3 weeks ago
Alternatives and similar repositories for bearer-rules
Users that are interested in bearer-rules are comparing it to the libraries listed below
Sorting:
- An extension to use Semgrep inside Burp Suite.☆89Updated 6 months ago
- Intentionally vulnerable Go web app.☆43Updated 2 months ago
- ☆206Updated 3 weeks ago
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆56Updated 2 years ago
- A collection of my Semgrep rules☆50Updated 2 years ago
- Find CVE PoCs on GitHub☆156Updated 4 months ago
- Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide☆42Updated last year
- try to determine if a host is vulnerable to SpringShell CVE‐2022‐22965 and CVE‐2022‐22963☆23Updated 3 years ago
- ☆72Updated 4 years ago
- Looking for JAR files that are vulnerable to Log4j RCE (CVE‐2021‐44228)?☆45Updated 3 years ago
- ☆61Updated last month
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆34Updated 9 months ago
- My custom semgrep rules☆22Updated 5 years ago
- Compiled dataset of Java deserialization CVEs☆60Updated 5 years ago
- Run CodeQL queries at scale using Multi-Repository Variant Analysis (MRVA)☆61Updated 7 months ago
- A curated GitHub repository that's in-scope and eligible for bounty.☆21Updated 3 years ago
- Subdomain enumeration statistics and wordlists from bugbounty scopes.☆34Updated 3 years ago
- A fingerprint generation helper for nuclei network templates☆78Updated 3 years ago
- A collection of Semgrep rules which followed security guidelines for .NET and Java.☆23Updated 4 years ago
- jws2pubkey tool☆41Updated 5 months ago
- tetctf2020_amf_writeups☆23Updated 4 years ago
- CVE-2022-22965 - CVE-2010-1622 redux☆19Updated 2 years ago
- ☆64Updated 4 years ago
- DNS resolver pools written in Go☆51Updated 2 weeks ago
- Manager of third-party sources of Semgrep rules 🗂☆90Updated last year
- Ready to use docker image for CodeQL☆90Updated last year
- Vulnerable Client-Server Application (VuCSA) is made for learning how to perform penetration tests of non-http thick clients. It is writt…☆98Updated 2 years ago
- Static code analysis tool based on Elasticsearch☆129Updated 4 years ago
- Action to retrofit a CodeQL bundle with additional queries, libraries, and customizations☆27Updated last year
- Some payloads of JNDI Injection in JDK 1.8.0_191+☆10Updated 5 years ago