PortSwigger / ci-driven-scan-github-actionLinks
A github action that allows you to run a vulnerability scan.
☆15Updated 2 years ago
Alternatives and similar repositories for ci-driven-scan-github-action
Users that are interested in ci-driven-scan-github-action are comparing it to the libraries listed below
Sorting:
- boostsecurityio/lotp☆138Updated last week
- Eliminate dangling elastic IPs by performing analysis on your resources within all your AWS accounts.☆278Updated last year
- openrisk is a tool that generates a risk score based on the results of a Nuclei scan.☆181Updated last month
- Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files☆229Updated 2 weeks ago
- 🛠️ Workflows created by the community☆86Updated last month
- How GitHub Actions workflows can be hacked☆176Updated last year
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆191Updated last year
- Scanner to identify dangling DNS records and subdomain takeovers☆49Updated last year
- DustiLock is a tool to find which of your dependencies is susceptible to a Dependency Confusion attack.☆40Updated 4 years ago
- Cloud agnostic IAM permissions enumerator☆161Updated 9 months ago
- An experimental high-performance DNS query bruteforce tool built with AF_XDP for extremely fast and accurate bulk DNS lookups.☆247Updated 7 months ago
- 🕸️ Blazing fast GraphQL endpoints finder using subdomain enumeration, scripts analysis and bruteforce. 🕸️☆227Updated 2 years ago
- Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently …☆314Updated last week
- A simple script which implements different Cognito attacks such as Account Oracle or Priviledge Escalation☆109Updated last year
- WebSocket REPL for pentesters☆233Updated last year
- PyCript Websocket is now merge into https://github.com/Anof-cyber/PyCript, this repo is not available anymore.☆82Updated last month
- A streamlined tool for discovering private TLDs for security research.☆239Updated this week
- A tool to keep AWS pentests and red teams efficient, organized, and stealthy.☆96Updated last month
- S3 Account Search☆35Updated 6 months ago
- A tool to quickly do keyword searches over Gitlab and Github for OSINT & bug bounty recon☆245Updated 2 years ago
- 🔗 A curated list of awesome Caido related projects☆46Updated 10 months ago
- A tool to scrape the AWS ranges looking for a keyword in SSL certificate data.☆239Updated 2 years ago
- ☆35Updated last year
- Enumeration/exploit/analysis/download/etc pentesting framework for GCP; modeled like Pacu for AWS; a product of numerous hours via @Webbi…☆283Updated 8 months ago
- 🔰 Caido Plugin StarterKit☆34Updated last year
- Distribute ordinary bash commands over many systems☆168Updated 3 years ago
- ☆60Updated last year
- GraphQL threat framework used by security professionals to research security gaps in GraphQL implementations☆347Updated 7 months ago
- A simple script that generates an Excel friendly CSV file from an Amass JSON file.☆13Updated 3 years ago
- Secrets Ninja is an GUI tool for validating & investigating API keys discovered during pentesting & bug bounty hunting.☆159Updated 2 months ago