RUB-NDS / PrOfESSOSLinks
PrOfESSOS is our open source implementation for fully automated Evaluation-as-a-Service for SSO. PrOfESSOS introduces a generic approach to improve the security of OpenID Connect implementations by systematically detecting vulnerabilities.
☆28Updated 2 years ago
Alternatives and similar repositories for PrOfESSOS
Users that are interested in PrOfESSOS are comparing it to the libraries listed below
Sorting:
- ☆30Updated 3 years ago
- Jaqen - Simple DNS rebinding☆75Updated 7 years ago
- An extension for BurpSuite that highlights SSO messages in Burp's proxy window..☆118Updated 4 years ago
- OAuth plugin for Burp Suite Extender☆43Updated 7 years ago
- Open Security Summit 2018☆29Updated 5 years ago
- Framework for Automated Security Testing that is Scaleable and Asynchronous built on Microservices☆18Updated 9 years ago
- WebBorer is a directory-enumeration tool written in Go.☆44Updated 2 years ago
- AutoTriageBot automatically verifies, deduplicates, and suggests payouts for incoming HackerOne reports.☆56Updated 3 years ago
- Index all certificates from certificate transparancy into Elasticsearch☆22Updated 8 years ago
- Testing/collecting some container breakouts☆94Updated 6 years ago
- TLS Redirection☆119Updated 8 years ago
- Advanced Vulnerable Web Application (AVWA)☆14Updated 8 years ago
- Security Payload Unit Test Repository (SPUTR)☆86Updated 2 years ago
- Scripts that we use for pentesting☆42Updated 8 years ago
- The SSH Multiplex Backdoor Tool☆65Updated 6 years ago
- Go static analysis tool that checks for security issues using an AST.☆29Updated 7 years ago
- A More or less Random Collection of Scripts for security Testing.☆64Updated 3 years ago
- Vulnerability Assessment and Auditing Framework for all the Crypto Implementations.☆37Updated 9 years ago
- OAuth Security Cheatsheet☆40Updated 11 years ago
- An example of obtaining RCE via Redis and CSRF☆76Updated 9 years ago
- AWS Extender CLI is a command-line script to test S3 buckets as well as Google Storage buckets and Azure Storage containers for common mi…☆83Updated 5 years ago
- Proof-of-concept CORS exploitation tool.☆35Updated 6 years ago
- Minimalist cheat sheet for developpers to write secure code☆54Updated 5 years ago
- Growing list of potentially dangerous PHP functions☆52Updated 6 years ago
- JMSDigger is JMS API basedEnterprise Messaging Application assessment tool☆30Updated 11 years ago
- A tool for automatically gathering sensitive information from exposed Jenkins servers☆104Updated 3 years ago
- A PoC that shows that Web Vulnerabilities can indeed be interesting☆20Updated 7 years ago
- ☆12Updated 8 years ago
- ☆32Updated 10 years ago
- Python script to check GitHub accounts for world-editable wiki pages☆21Updated 2 years ago