Orange-Cyberdefense / grepmarxLinks
A source code static analysis platform for AppSec enthusiasts.
☆253Updated 4 months ago
Alternatives and similar repositories for grepmarx
Users that are interested in grepmarx are comparing it to the libraries listed below
Sorting:
- Black box fuzzer for web applications☆427Updated 3 weeks ago
- Find CVE PoCs on GitHub☆147Updated last year
- Find authentication (authn) and authorization (authz) security bugs in web application routes.☆270Updated 4 months ago
- A rapid HTTP downgrade smuggling scanner written in Go.☆302Updated last year
- Zero-dollar attack surface management tool☆295Updated last year
- Burp Suite extension for bypassing client-side encryption for pentesting and bug bounty☆207Updated 3 months ago
- gRPC-Web Pentesting Suite + Burp Suite Extension / Hack gRPC-Web Applications☆225Updated 4 months ago
- Hourly updated database of exploit and exploitation reports☆256Updated 5 months ago
- A blazing fast and fully configurable Blind SQL Injection optimization and automation framework.☆138Updated last month
- Session Hijacking Visual Exploitation☆201Updated last year
- Repository to store exploits created by Assetnotes Security Research team☆179Updated last year
- Safely detect whether a FortiGate SSL VPN instance is vulnerable to CVE-2023-27997 based on response timing☆134Updated last year
- FlowMate, a BurpSuite extension that brings taint analysis to web applications, by tracking all parameters send to a target application a…☆162Updated 8 months ago
- A GraphQL enumeration and extraction tool☆131Updated 2 years ago
- Subdomains analysis and generation tool. Reveal the hidden!☆241Updated last month
- Burp Extension to add additional functionality for pentesting websocket based applications☆95Updated last year
- SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens☆161Updated 7 months ago
- Slip is a CLI tool to create malicious archive files containing path traversal payloads. It supports zip, tar, 7z and zip-like (jar, war,…☆103Updated last month
- A PoC for the CVE-2022-44268 - ImageMagick arbitrary file read☆216Updated 3 months ago
- Repository of AI-generated Nuclei templates for public CVEs not yet covered by existing templates, enhancing detection speed and coverage…☆89Updated last month
- PoC_CVEs☆163Updated last week
- Source Code Management Attack Toolkit☆219Updated 2 years ago
- Vulnerable environments paired with ready-to-use Nuclei templates for security testing and learning! 🚀☆100Updated this week
- Nuclear Pond is a utility leveraging Nuclei to perform internet wide scans for the cost of a cup of coffee.☆182Updated last year
- Web dashboard for Interactsh client☆224Updated last month
- Detailed information about API key / OAuth token (Description, Request, Response, Regex, Example)☆276Updated last year
- Secrets scanner that understands code☆145Updated 4 months ago
- JMX enumeration and attacking tool.☆450Updated 2 weeks ago
- 🔑 Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials.☆422Updated 8 months ago
- reverse shell using curl☆457Updated last year