Orange-Cyberdefense / grepmarx
A source code static analysis platform for AppSec enthusiasts.
☆232Updated this week
Alternatives and similar repositories for grepmarx:
Users that are interested in grepmarx are comparing it to the libraries listed below
- Black box fuzzer for web applications☆421Updated 7 months ago
- Find CVE PoCs on GitHub☆143Updated last year
- Find authentication (authn) and authorization (authz) security bugs in web application routes.☆256Updated 7 months ago
- Source Code Management Attack Toolkit☆213Updated 2 years ago
- JMX enumeration and attacking tool.☆417Updated 3 weeks ago
- Weekly updated list of missing CVEs in nuclei templates official repository. Mainly built for bug bounty, but useful for penetration test…☆348Updated this week
- A rapid HTTP downgrade smuggling scanner written in Go.☆253Updated 9 months ago
- Subdomains analysis and generation tool. Reveal the hidden!☆235Updated this week
- ☆180Updated 3 months ago
- Repository to store exploits created by Assetnotes Security Research team☆174Updated last year
- Burp Suite extension for bypassing client-side encryption for pentesting and bug bounty☆200Updated last month
- FlowMate, a BurpSuite extension that brings taint analysis to web applications, by tracking all parameters send to a target application a…☆156Updated 3 months ago
- Session Hijacking Visual Exploitation☆194Updated 11 months ago
- Hourly updated database of exploit and exploitation reports☆254Updated 3 weeks ago
- RCE exploit for CVE-2023-3519☆221Updated last year
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆56Updated 9 months ago
- ☆406Updated 2 years ago
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆169Updated 3 months ago
- Automated learning of regexes for DNS discovery☆363Updated 2 years ago
- Web dashboard for Interactsh client☆199Updated 2 months ago
- Detailed information about API key / OAuth token (Description, Request, Response, Regex, Example)☆268Updated last year
- Standalone utility for service discovery on open ports!☆593Updated 6 months ago
- Link sources to sinks in C# applications.☆143Updated last year
- WebSocket REPL for pentesters☆217Updated 6 months ago
- POC for CVE-2022-47966 affecting multiple ManageEngine products☆126Updated 2 years ago
- SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens☆152Updated 2 months ago
- Java RMI Vulnerability Scanner☆851Updated 7 months ago
- GitLab CVE-2023-2825 PoC. This PoC leverages a path traversal vulnerability to retrieve the /etc/passwd file from a system running GitLab…☆142Updated last year
- Afuzz is an automated web path fuzzing tool for the Bug Bounty projects.☆303Updated last year
- A PoC for the CVE-2022-44268 - ImageMagick arbitrary file read☆213Updated 2 years ago