Minimalist cheat sheet for developpers to write secure code
☆54Jul 17, 2020Updated 6 years ago
Alternatives and similar repositories for security-cheat-sheet
Users that are interested in security-cheat-sheet are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Burp and ZAP plugin that display image metadata (JPEG Exif or PNG text chunk).☆16Apr 15, 2023Updated 3 years ago
- Material from presentations done by GoSecure researchers☆34Oct 10, 2023Updated 2 years ago
- It contain google dork to find the wsdl file.☆13May 27, 2020Updated 6 years ago
- ☆20Jan 12, 2022Updated 4 years ago
- Workshop given at Hack in Paris 2019☆126Jun 8, 2023Updated 3 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Identify vulnerable libraries in Maven dependencies☆45Dec 14, 2022Updated 3 years ago
- Vulnerable Node.js Web Application to pratice with your pentesting skills☆21Apr 29, 2017Updated 9 years ago
- source code audit tool☆48May 9, 2021Updated 5 years ago
- ☆18Oct 30, 2022Updated 3 years ago
- FxCop rules that aim to help security audit on .NET applications.☆14Nov 10, 2017Updated 8 years ago
- Carve Windows Prefetch files from arbitrary binary data☆16Jun 11, 2017Updated 9 years ago
- psychoPATH - hunting file uploads & LFI in the dark. This tool is a customisable payload generator designed for blindly detecting LFI & w…☆19Jun 28, 2018Updated 8 years ago
- Portable utility to check if a machine has been infected by Shamoon2☆15Jan 13, 2017Updated 9 years ago
- A proof of concept that demonstrates asynchronous scanning for Java deserialization bugs☆55Mar 27, 2017Updated 9 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Collection of my slide decks, conference videos and research white papers☆27Sep 23, 2025Updated 9 months ago
- 一个爬取国内技术站点的技术文章☆33Dec 24, 2017Updated 8 years ago
- A Collection of Proof of Concepts for non-published Web Exploits and Common CVEs☆10Nov 29, 2020Updated 5 years ago
- V1.0☆14Aug 8, 2016Updated 9 years ago
- DO NOT RUN THIS.☆10Jul 15, 2021Updated 5 years ago
- ☆90Sep 7, 2018Updated 7 years ago
- Rapid Assessment of Web Resources☆19Nov 11, 2016Updated 9 years ago
- VM escape (QEMU, VirtualBox, VMware)☆16Mar 21, 2022Updated 4 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆47Mar 22, 2017Updated 9 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- ☆12Mar 31, 2021Updated 5 years ago
- My notes of Day1 Day2 will be posted here as journey☆17Jan 6, 2021Updated 5 years ago
- CTF(x) 2016 problem statements, files, and writeups☆16Jan 30, 2019Updated 7 years ago
- A collection of scripts that I've written while pentesting.☆31Aug 3, 2018Updated 7 years ago
- A collection of XSS Attack vectors☆10Apr 26, 2025Updated last year
- PrOfESSOS is our open source implementation for fully automated Evaluation-as-a-Service for SSO. PrOfESSOS introduces a generic approach …☆29Jan 8, 2023Updated 3 years ago
- Tool for checking reflecting Parameters in a URL.☆10Aug 31, 2020Updated 5 years ago
- The aim of the project is to develop intentionally vulnerable source code in various languages.☆16Mar 3, 2026Updated 4 months ago
- Automated Reverse TCP tunneling using a digitalocean instance and aploium's shootback repo (https://github.com/aploium/shootback)☆13Oct 30, 2018Updated 7 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆11Jul 28, 2020Updated 5 years ago
- ☆29Nov 10, 2016Updated 9 years ago
- Presentation Slides☆26Jun 7, 2019Updated 7 years ago
- Burp and ZAP plugin to analyse Content-Security-Policy headers or generate template CSP configuration from crawling a Website☆142Apr 29, 2020Updated 6 years ago
- ☆11Jan 24, 2023Updated 3 years ago
- Web interface and APIs for Assemblyline 4☆21Updated this week
- Small and highly portable detection tests.☆13Apr 13, 2018Updated 8 years ago