Escape-Technologies / graphql-security-academy
🔒 A free, open-source platform dedicated to understand and secure GraphQL applications — all directly in your browser!
☆52Updated 3 weeks ago
Related projects ⓘ
Alternatives and complementary repositories for graphql-security-academy
- Blazing fast GraphQL discovery & fingerprinting toolbox.☆101Updated last year
- A curated list of awesome GraphQL Security frameworks, libraries, software and resources☆299Updated 9 months ago
- The only GraphQL wordlist you'll ever need. Operations, field names, type names... Collected on more than 60k distinct GraphQL schemas.☆329Updated last year
- 🕸️ Blazing fast GraphQL endpoints finder using subdomain enumeration, scripts analysis and bruteforce. 🕸️☆195Updated last year
- Security Auditor Utility for GraphQL APIs☆384Updated 2 months ago
- GraphQL threat framework used by security professionals to research security gaps in GraphQL implementations☆288Updated 11 months ago
- Obtain GraphQL API Schema even if the introspection is not enabled☆11Updated last year
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.☆185Updated 3 months ago
- Proviesec Fuzz Scanner - dir/path web scanner☆99Updated 2 months ago
- 🔍A cutting edge context aware GraphQL API fuzzing tool!☆127Updated this week
- graphw00f is GraphQL Server Engine Fingerprinting utility for software security professionals looking to learn more about what technology…☆579Updated last month
- ☆193Updated 6 months ago
- CrackQL is a GraphQL password brute-force and fuzzing utility.☆315Updated 3 months ago
- Sasori is a dynamic web crawler powered by Puppeteer, designed for lightning-fast endpoint discovery.☆132Updated 3 months ago
- GQLSpection - parses GraphQL introspection schema and generates possible queries☆71Updated 5 months ago
- GraphQL automated security testing toolkit☆303Updated 9 months ago
- A tool to quickly do keyword searches over Gitlab and Github for OSINT & bug bounty recon☆228Updated last year
- Chrome extension for automating CSPT discovery☆49Updated last month
- OWASP Foundation Web Respository☆19Updated last month
- Automated API security testing☆81Updated 3 months ago
- Tool to parse subdomains from dmarc.live☆63Updated 7 months ago
- ☆143Updated last month
- GraphQL security workshop labs☆102Updated 4 months ago
- openrisk is a tool that generates a risk score based on the results of a Nuclei scan.☆166Updated 6 months ago
- A cheatsheet for common JavaScript sources and sinks that lead to potential vulnerabilities.☆18Updated last year
- A Broken Application - Very Vulnerable!☆131Updated 2 weeks ago
- API Security Vulnerability Scanner designed to help you secure your APIs.☆83Updated this week
- EvenBetter is a frontend Caido plugin that makes the Caido experience even better 😎☆135Updated 2 weeks ago