Orange-Cyberdefense / grepmarx
A source code static analysis platform for AppSec enthusiasts.
☆236Updated 3 weeks ago
Alternatives and similar repositories for grepmarx:
Users that are interested in grepmarx are comparing it to the libraries listed below
- Find CVE PoCs on GitHub☆144Updated last year
- Black box fuzzer for web applications☆423Updated 8 months ago
- Find authentication (authn) and authorization (authz) security bugs in web application routes.☆257Updated 8 months ago
- JMX enumeration and attacking tool.☆420Updated last month
- Source Code Management Attack Toolkit☆213Updated 2 years ago
- ☆182Updated 4 months ago
- Hourly updated database of exploit and exploitation reports☆254Updated last month
- Burp Suite extension for bypassing client-side encryption for pentesting and bug bounty☆201Updated last month
- Repository to store exploits created by Assetnotes Security Research team☆176Updated last year
- A rapid HTTP downgrade smuggling scanner written in Go.☆253Updated 9 months ago
- Weekly updated list of missing CVEs in nuclei templates official repository. Mainly built for bug bounty, but useful for penetration test…☆349Updated this week
- Session Hijacking Visual Exploitation☆196Updated last year
- FlowMate, a BurpSuite extension that brings taint analysis to web applications, by tracking all parameters send to a target application a…☆156Updated 4 months ago
- Subdomains analysis and generation tool. Reveal the hidden!☆236Updated this week
- Detailed information about API key / OAuth token (Description, Request, Response, Regex, Example)☆271Updated last year
- Kraken, a modular multi-language webshell coded by @secu_x11☆534Updated last year
- Proof of concept code for Datadog Security Labs referenced exploits.☆425Updated last year
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆59Updated 10 months ago
- Automated learning of regexes for DNS discovery☆364Updated 2 years ago
- gRPC-Web Pentesting Suite + Burp Suite Extension / Hack gRPC-Web Applications☆208Updated 2 weeks ago
- Kubernetes exploitation tool☆362Updated 7 months ago
- WebSocket REPL for pentesters☆218Updated 7 months ago
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆171Updated 4 months ago
- Nuclei AI - Browser Extension for Rapid Nuclei Template Generation☆487Updated 2 months ago
- Nuclear Pond is a utility leveraging Nuclei to perform internet wide scans for the cost of a cup of coffee.☆177Updated last year
- A GraphQL enumeration and extraction tool☆130Updated 2 years ago
- Standalone utility for service discovery on open ports!☆597Updated last week
- Burp Extension to add additional functionality for pentesting websocket based applications☆91Updated 9 months ago
- CSTC is a Burp Suite extension that allows request/response modification using a GUI analogous to CyberChef☆232Updated last week
- reverse shell using curl☆451Updated 10 months ago