PortSwigger / attack-surface-detectorLinks
The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters
☆14Updated 3 years ago
Alternatives and similar repositories for attack-surface-detector
Users that are interested in attack-surface-detector are comparing it to the libraries listed below
Sorting:
- Simple trick to increase readability of exceptions raised by Burp extensions written in Python☆46Updated 8 years ago
- This is a Burpsuite plugin built to enable you to import your directory bruteforcing results into burp for easy viewing later. This is an…☆36Updated 2 years ago
- Burp Extension for AWS Signing☆89Updated 8 months ago
- Alphanumeric Encoder☆25Updated 6 years ago
- ☆29Updated 8 years ago
- An AWS Lambda vulnerable application written in flask.☆49Updated 7 years ago
- An enumeration and exploitation toolkit using RFC calls to SAP☆39Updated 5 years ago
- OAuth Security Cheatsheet☆40Updated 11 years ago
- API testing tool written with Python☆56Updated 8 years ago
- Capture all RabbitMQ messages being sent through a broker.☆32Updated 4 years ago
- ☆36Updated 5 years ago
- LetMeOutOfYour.net Resources☆20Updated 5 years ago
- WStalker: an easy proxy☆25Updated 5 years ago
- Unofficial api for cve.mitre.org☆40Updated 4 years ago
- Scripts that we use for pentesting☆42Updated 8 years ago
- Notes as I learn basic AWS penetration testing☆67Updated 6 years ago
- Manticore Adversary Emulation Cli☆48Updated 5 years ago
- Slides of the talk on Injection attacks in apps with NoSQL Backends, given at null OWASP Bangalore monthly meet on 27th April 2019☆22Updated 6 years ago
- Kubernetes Scanner☆40Updated 3 years ago
- Zone transfers for rwhois☆20Updated 6 years ago
- Tools for auditing WAFS☆19Updated 3 years ago
- Terraform configuration to build a Burp Private Collaborator Server☆29Updated 6 years ago
- Exfiltration based on custom X509 certificates☆26Updated last year
- A tool for auditing medical devices and healthcare infrastructure☆21Updated 2 years ago
- Docker Version of Aquatone☆14Updated 7 years ago
- Tools that I've created/used during CTP-OSCE☆10Updated 6 years ago
- Forked and updated with some additional features over the original☆17Updated 4 years ago
- Screenshot Shenanigans☆26Updated 7 years ago
- ☆21Updated 5 years ago
- During pentesting I often miss screenshots of events for reports due to the quick pace of testing and a lack of foreknowledge about what …☆26Updated 6 years ago