OWASP / crAPILinks
completely ridiculous API (crAPI)
☆1,407Updated this week
Alternatives and similar repositories for crAPI
Users that are interested in crAPI are comparing it to the libraries listed below
Sorting:
- Vulnerable REST API with OWASP top 10 vulnerabilities for security testing☆1,158Updated last year
- vAPI is Vulnerable Adversely Programmed Interface which is Self-Hostable API that mimics OWASP API Top 10 scenarios through Exercises.☆1,321Updated last year
- Organize your API security assessment by using MindAPI. It's free and open for community collaboration.☆857Updated 3 months ago
- Damn Vulnerable Web Services is a vulnerable application with a web service and an API that can be used to learn about webservices/API re…☆500Updated this week
- Burp Suite Certified Practitioner Exam Study☆1,281Updated last month
- Twitter vulnerable snippets☆1,088Updated 10 months ago
- ☆1,117Updated 2 years ago
- ☆420Updated 3 years ago
- The Web Security Testing Guide (WSTG) Project produces the premier cybersecurity testing resource for web application developers and secu…☆551Updated this week
- ☆720Updated this week
- Contextual Content Discovery Tool☆3,058Updated last year
- ☆1,820Updated this week
- A OWASP Based Checklist With 500+ Test Cases☆841Updated 3 years ago
- Sticky notes for pentesting, bug bounty, CTF.☆769Updated 5 months ago
- ☆993Updated 10 months ago
- A collection of awesome API Security tools and resources. The focus goes to open-source tools and resources that benefit all the communit…☆3,608Updated last month
- A Burp Suite extension to add OpenAI (GPT) on Burp and help you with your Bug Bounty recon to discover endpoints, params, URLs, subdomain…☆887Updated 2 years ago
- Asset inventory of over 800 public bug bounty programs.☆1,507Updated 11 months ago
- REcollapse is a helper tool for black-box regex fuzzing to bypass validations and discover normalizations in web applications☆1,275Updated 5 months ago
- PeTeReport is an open-source application vulnerability reporting tool.☆533Updated last year
- Extract URLs, paths, secrets, and other interesting bits from JavaScript☆1,714Updated last year
- An easy-to-setup version of XSS Hunter. Sets up in five minutes and requires no maintenance!☆2,212Updated last year
- Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist☆1,486Updated last week
- An XSS exploitation command-line interface and payload generator.☆1,408Updated 11 months ago
- 403/401 Bypass Methods + Bash Automation + Your Support ;)☆1,556Updated 3 years ago
- Automated & Manual Wordlists provided by Assetnote☆1,587Updated 3 weeks ago
- A wordlist of API names for web application assessments☆860Updated 7 months ago
- SecurityExplained is a new series after the previous learning challenge series #Learn365. The aim of #SecurityExplained series is to crea…☆543Updated 3 years ago
- BChecks collection for Burp Suite Professional and Burp Suite DAST☆758Updated this week
- Rockyou for web fuzzing☆2,988Updated 4 months ago