IOActive / RepoSsessed
A project designed to parse public source code repositories and find various types of vulnerabilities.
☆190Updated 7 years ago
Alternatives and similar repositories for RepoSsessed:
Users that are interested in RepoSsessed are comparing it to the libraries listed below
- burpbuddy exposes Burp Suites's extender API over the network through various mediums, with the goal of enabling development in any langu…☆157Updated 6 years ago
- Common Findings Database☆100Updated 5 years ago
- ReconJSON is a project dedicated to creating a flexible and consistent JSON format across popular recon tools.☆102Updated 5 years ago
- Fast subdomains enumeration tool for penetration testers☆117Updated 5 years ago
- ☆92Updated 6 years ago
- Security Payload Unit Test Repository (SPUTR)☆86Updated last year
- penetration testing scripts☆137Updated 5 years ago
- A collection of all the lists, scripts and techniques I use while doing web application penetration tests.☆168Updated 8 years ago
- A Github organization reconnaissance tool.☆216Updated last year
- A tool for importing vulnerability scanner data and then allowing you to manipulate the risks, affected hosts, and create risk ordered ou…☆78Updated 7 months ago
- A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain.☆110Updated 5 years ago
- Extract Sense out of Gibberish stuff☆82Updated 7 years ago
- A Burp Suite content discovery plugin that add the smart into the Buster!☆383Updated 4 years ago
- Portable and flexible web application security assessment tool.It parses Burp Suite log and performs various tests depending on the modul…☆121Updated 6 years ago
- A Burp Plugin for Detecting Weaknesses in Content Security Policies☆164Updated last year
- A DNS connectback shell executed by strings in payloads.txt☆102Updated last year
- An example of obtaining RCE via Redis and CSRF☆76Updated 8 years ago
- PoC for an adaptive parallelised DNS prober☆44Updated 7 years ago
- PoC for an adaptive parallelised DNS prober☆107Updated 2 years ago
- ☆122Updated 6 years ago
- Burp and ZAP plugin to analyse Content-Security-Policy headers or generate template CSP configuration from crawling a Website☆138Updated 4 years ago
- ☆88Updated last week
- Based on URL and Organization Name, collect the IP Ranges, subdomains using various tools like Amass, subfinder, etc.. And check for upho…☆154Updated 8 months ago
- Open Red Team Bag of Tricks - Red Teaming and Pentesting cheat sheet and trick book☆96Updated 8 years ago
- The Unofficial Burp Extension for DNSDumpster.com☆70Updated 6 years ago
- Shodan HQ nmap plugin - passively scan targets☆152Updated 8 years ago
- Test a network's egress controls with various levels of success and failure.☆103Updated 2 years ago
- Testing/collecting some container breakouts☆93Updated 5 years ago
- A simple tool for offline searching of default credentials for network devices, web applications and more.☆167Updated 7 years ago
- Archaeologit scans the history of a user's GitHub repositories for a given pattern to find sensitive things.☆140Updated 6 years ago