OWASP / owasp-cstgLinks
☆36Updated 5 years ago
Alternatives and similar repositories for owasp-cstg
Users that are interested in owasp-cstg are comparing it to the libraries listed below
Sorting:
- Scripts and tools for AWS Pentest☆53Updated 4 years ago
- ☆90Updated 3 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆76Updated 3 years ago
- Slackhound allows red and blue teams to perform fast reconnaissance on Slack workspaces/organizations to quickly search user profiles, lo…☆82Updated last month
- learning case to prepare OSWE☆37Updated 5 years ago
- Posts about different topics☆40Updated 3 weeks ago
- Deploy a Private Burpsuite Collaborator using boto3 Python Library☆58Updated 5 years ago
- Burp Extension for AWS Signing☆89Updated 8 months ago
- OSCP guide and Red Team assessment Guide☆35Updated 5 years ago
- This script is a multi-threaded Okta password sprayer.☆72Updated last year
- ☆60Updated 2 years ago
- Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool☆25Updated 3 years ago
- An Evil OIDC Server☆53Updated 2 years ago
- A place to store my various pentesting related code thats too small/niche to justify its own repository, and a simple website with notes …☆38Updated last month
- Jekyll Files for cloudsecwiki.com☆50Updated 3 years ago
- Extensive code infrastructure for finding unintended information leaks in files, git repositories and much more.☆28Updated 2 years ago
- Terraform resources for building HTTP, DNS, phishing, and mail server red team infrastructure☆95Updated 6 years ago
- An AWS Lambda vulnerable application written in flask.☆49Updated 7 years ago
- Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, an…☆144Updated 2 years ago
- Report and finding templates used by the Serpico reporting tool☆16Updated 6 years ago
- Any presentation we've given at FortyNorth Security☆34Updated 3 years ago
- A list of "secrets" from JWT sample code and readme files.☆55Updated 4 years ago
- A step-by-step walkthrough of CloudGoat 2.0 scenarios.☆135Updated 5 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆14Updated 3 years ago
- A lab to play with authentication and authorisation problems☆96Updated 2 years ago
- ☆67Updated 6 years ago
- Pivot into private VPC networks using a VPN connection☆43Updated 5 years ago
- Burp with Friends☆103Updated 2 years ago
- JavaScript functions intended to be used as an XSS payload against a WordPress admin account.☆55Updated 4 years ago
- ☆127Updated last year