JBAhire / awesome-api-security-essentials
Awesome API Security: A Curated Collection of Resources for Bulletproof API Protection!
☆53Updated last year
Alternatives and similar repositories for awesome-api-security-essentials:
Users that are interested in awesome-api-security-essentials are comparing it to the libraries listed below
- Awesome curate list of cyber security penetration testing tools for Cloud Security mainly AWS/Azure/Google☆118Updated 3 years ago
- FlowAnalyzer is a tool to help in testing and analyzing OAuth 2.0 Flows, including OpenID Connect (OIDC).☆179Updated 6 months ago
- Clean accounts over permissions in GCP infra at scale☆71Updated last year
- A project to visualize the software supply chain☆38Updated last year
- Create notes during a security code review in VSCode 📝 Import your favorite SAST tool findings 🛠️ and collaborate with others 🤝☆132Updated last year
- 🧪 Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.☆38Updated last month
- ☆70Updated 11 months ago
- Tool for obfuscating and deobfuscating data.☆67Updated 10 months ago
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆27Updated 11 months ago
- Crawlector is a threat hunting framework designed for scanning websites for malicious objects.☆126Updated last year
- Use AI to Scan Your Code from the Command Line for security and code smells. Bring your own keys. Supports OpenAI and Gemini☆154Updated 10 months ago
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. …☆61Updated 7 months ago
- truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)☆113Updated last year
- ☆110Updated last year
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessments☆134Updated 3 weeks ago
- ☆32Updated 5 months ago
- Nextdoor's Cloud Security Posture Management (CSPM) Evaluation Matrix☆59Updated last year
- Modular web-application honeypot platform built using go and gin☆54Updated 8 months ago
- Build a CVE library with aggregated CISA, EPSS and CVSS data☆27Updated last year
- Automation tool for Windows Deception Host Burn-In☆81Updated last month
- PWN is an open security automation framework that aims to stand on the shoulders of security giants, promoting trust and innovation.☆38Updated this week
- RedFlag uses AI to identify high-risk code changes. Run it in batch mode for release candidate testing or in CI pipelines to flag PRs and…☆144Updated 2 months ago
- cloudgrep is grep for cloud storage☆324Updated last month
- Efficient DevSecOps☆47Updated 2 months ago
- Nuclei plugins to audit Chrome extensions☆64Updated 6 months ago
- LLM Testing Findings Templates☆66Updated 11 months ago
- 🌐 Visualize and explore IaC ✒️ Create and share notes in VS Code 🤝 Sync notes and findings in real-time with friends☆71Updated 11 months ago
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆60Updated last year
- ☆171Updated 2 months ago