OWASP / TimeGap-TheoryLinks
An auto-scoring capture-the-flag game focusing on TOCTOU vulnerabilities
☆21Updated 5 years ago
Alternatives and similar repositories for TimeGap-Theory
Users that are interested in TimeGap-Theory are comparing it to the libraries listed below
Sorting:
- #INFILTRATE19 raptor's party pack.☆32Updated last week
- Reference architecture and proof of concept implementation for supply chain security gateway☆23Updated 2 years ago
- Salesforce Policy Deviation Checker☆30Updated 5 years ago
- Collection of Semgrep rules for security analysis☆11Updated last year
- A Simple command line tool that helps checking web applications to identify insecure deserialization vulnerabilities.☆24Updated 6 years ago
- Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool☆24Updated 4 years ago
- HTTP Desync Attack☆28Updated 5 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆14Updated 3 years ago
- Paper, data and code from Investigating Potential Security Vulnerability Manifestation through Various Analyses & Inferences Regarding In…☆19Updated 4 years ago
- Spring-Boot app for demonstrating security vulnaribilities☆13Updated 6 years ago
- Dependency Combobulator☆93Updated last year
- Tools for auditing WAFS☆19Updated 3 years ago
- Simple trick to increase readability of exceptions raised by Burp extensions written in Python☆45Updated 8 years ago
- Burp Extension for AWS Signing☆89Updated 10 months ago
- A regular expression fuzzer.☆45Updated 7 years ago
- OAuth 2.0 Dynamic Security Scanner☆33Updated 4 years ago
- A tool for auditing medical devices and healthcare infrastructure☆21Updated 2 years ago
- WStalker: an easy proxy☆25Updated 5 years ago
- Terraform configuration to build a Burp Private Collaborator Server☆25Updated 8 years ago
- ☆29Updated 8 years ago
- Python tool for large scale git analysis. Inspired by gitrob.☆20Updated 5 years ago
- Redis Security Map - Anti-hacking for Redis☆31Updated 3 years ago
- This Burp Suite extension enables the generation of shareable links to specific requests which other Burp Suite users can import.☆12Updated 3 years ago
- Tool to automate takeover of DigitalOcean Kubernetes cluster. Check out the blog post for more info.☆17Updated 6 years ago
- An automated setup for fuzzing Redis w/ AFL++☆34Updated 3 years ago
- Dockerfile for AFL++ and helpful other tools☆21Updated 5 years ago
- Proof of concept for an anti-phishing browser plugin, working by comparing pages screenshots with perceptual hashing algorithms.☆11Updated 3 years ago
- This repository contains hit lists to use for web application content discovery.☆11Updated 8 years ago
- Collection of my slide decks, conference videos and research white papers☆27Updated 2 months ago
- Slides of the talk on Injection attacks in apps with NoSQL Backends, given at null OWASP Bangalore monthly meet on 27th April 2019☆22Updated 6 years ago