RUB-NDS / PrOfESSOSLinks
PrOfESSOS is our open source implementation for fully automated Evaluation-as-a-Service for SSO. PrOfESSOS introduces a generic approach to improve the security of OpenID Connect implementations by systematically detecting vulnerabilities.
☆28Updated 2 years ago
Alternatives and similar repositories for PrOfESSOS
Users that are interested in PrOfESSOS are comparing it to the libraries listed below
Sorting:
- An extension for BurpSuite that highlights SSO messages in Burp's proxy window..☆118Updated 4 years ago
- Testing/collecting some container breakouts☆94Updated 6 years ago
- ☆30Updated 3 years ago
- Jaqen - Simple DNS rebinding☆75Updated 7 years ago
- The SSH Multiplex Backdoor Tool☆65Updated 6 years ago
- Index all certificates from certificate transparancy into Elasticsearch☆22Updated 7 years ago
- Go static analysis tool that checks for security issues using an AST.☆29Updated 6 years ago
- WebBorer is a directory-enumeration tool written in Go.☆44Updated 2 years ago
- Framework for Automated Security Testing that is Scaleable and Asynchronous built on Microservices☆18Updated 9 years ago
- A More or less Random Collection of Scripts for security Testing.☆65Updated 3 years ago
- TLS Redirection☆120Updated 7 years ago
- ☆25Updated 4 years ago
- WStalker: an easy proxy☆25Updated 5 years ago
- Scripts that we use for pentesting☆42Updated 8 years ago
- intentionally vulnerable API☆30Updated last year
- Advanced Vulnerable Web Application (AVWA)☆14Updated 8 years ago
- An example of obtaining RCE via Redis and CSRF☆76Updated 9 years ago
- .NET Deserialization Passive Scanner☆46Updated 7 years ago
- Vulnerability Assessment and Auditing Framework for all the Crypto Implementations.☆37Updated 9 years ago
- ☆92Updated 6 years ago
- OAuth plugin for Burp Suite Extender☆42Updated 7 years ago
- A static-code-analysis tool for performing security-focused code reviews. It enables an auditor to swiftly map the attack-surface of a la…☆141Updated last year
- A tool for automatically gathering sensitive information from exposed Jenkins servers☆104Updated 2 years ago
- ☆38Updated 5 years ago
- Cracker for Apache.lang.commons RandomStringUtils(). Code for "The Java Soothsayer" talk at EkoParty 2017 by Alejo Popovici.☆33Updated 7 years ago
- Security Payload Unit Test Repository (SPUTR)☆86Updated 2 years ago
- OAuth Security Cheatsheet☆40Updated 11 years ago
- Burp and ZAP plugin to analyse Content-Security-Policy headers or generate template CSP configuration from crawling a Website☆139Updated 5 years ago
- Highlight Burp proxy requests made by different browsers☆29Updated 8 years ago
- Open Security Summit 2018☆29Updated 4 years ago