RUB-NDS / REST-Attacker
REST-Attacker is designed as a proof-of-concept for the feasibility of testing generic real-world REST implementations. Its goal is to provide a framework for REST security research.
☆78Updated 2 years ago
Alternatives and similar repositories for REST-Attacker:
Users that are interested in REST-Attacker are comparing it to the libraries listed below
- EC2StepShell is an AWS post-exploitation tool for getting high privileges reverse shells in public or private EC2 instances.☆62Updated 4 months ago
- A Burp Suite Extension for pentester and bug bounty hunters an to maintain checklist, map flows, write test cases and track vulnerabiliti…☆113Updated last year
- A Burp Suite extension for finding DNS vulnerabilities in web applications!☆94Updated last year
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆27Updated last year
- Reconmap's web client written in React. Manage all your pentest projects from a single place.☆52Updated this week
- A fast enumeration tool for publicly exposed Azure Storage blobs.☆83Updated last year
- Checks whether a domain is hosted on a cloud service such as AWS, Azure or CloudFlare☆58Updated 2 years ago
- REST API backend for Reconmap☆47Updated last week
- A list of threat sinks used in the manual security source code review for application security☆70Updated last year
- Striping CDN IPs from a list of IP Addresses☆75Updated 2 years ago
- A collection of red blue team staff☆45Updated last year
- A "Spring4Shell" vulnerability scanner.☆50Updated last week
- Script to automate, when possible, the passive reconnaissance performed on a website prior to an assessment.☆37Updated 3 weeks ago
- OSCP Study Guide☆40Updated 2 years ago
- User enumeration and password spraying tool for testing Azure AD☆69Updated 2 years ago
- Azure Service Subdomain Enumeration☆47Updated 4 months ago
- This is vulnerable microservice written in many language to demonstrating OWASP API Top Security Risk (under development)☆43Updated last year
- A go-exploit to scan for Juniper firewalls vulnerable to CVE-2023-36845☆61Updated this week
- ☆154Updated 3 years ago
- PassMute - A multi featured Password Transmutation/Mutator Tool☆51Updated last year
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆39Updated 2 years ago
- ☆52Updated this week
- A python3 script searching for secret on swaggerhub☆60Updated 2 years ago
- Cake Fuzzer is a project that is meant to help automatically and continuously discover vulnerabilities in web applications created based …☆99Updated last year
- Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications☆25Updated 2 years ago
- A project for fuzzing HTTP/1.1 CL.0 Request Smuggling Attack Vectors☆85Updated 11 months ago
- Damn Vulnerable PHP Application (DVPA) - It is Lab Written in The PHP lang, Which Contains PHP Type Juggling - RCE Challenges☆32Updated 2 years ago
- ☆102Updated 2 years ago
- Simple bash Script to automate initial recon using (httpx, puredns, regulator, wayback, katana, aquatone)☆35Updated 2 years ago
- A BurpSuite extension to deploy an OpenVPN config file to DigitalOcean and set up a SOCKS proxy to route traffic through it☆48Updated 11 months ago