RUB-NDS / REST-AttackerLinks
REST-Attacker is designed as a proof-of-concept for the feasibility of testing generic real-world REST implementations. Its goal is to provide a framework for REST security research.
☆80Updated 2 years ago
Alternatives and similar repositories for REST-Attacker
Users that are interested in REST-Attacker are comparing it to the libraries listed below
Sorting:
- HazProne is a Cloud Pentesting Framework that emulates close to Real-World Scenarios by deploying Vulnerable-By-Demand AWS resources enab…☆40Updated 3 years ago
- A python3 script searching for secret on swaggerhub☆67Updated 3 years ago
- Enumerate AWS cloud resources based on provided credential☆51Updated 3 years ago
- A Burp Suite extension for finding DNS vulnerabilities in web applications!☆95Updated last year
- spk aka spritzgebaeck: A small OSINT/Recon tool to find CIDRs that belong to a specific organization.☆84Updated 2 months ago
- ☆105Updated 2 years ago
- A Burp Suite Extension for pentester and bug bounty hunters an to maintain checklist, map flows, write test cases and track vulnerabiliti…☆116Updated 2 years ago
- EC2StepShell is an AWS post-exploitation tool for getting high privileges reverse shells in public or private EC2 instances.☆66Updated 10 months ago
- A fast enumeration tool for publicly exposed Azure Storage blobs.☆98Updated 2 years ago
- A list of threat sinks used in the manual security source code review for application security☆72Updated 2 years ago
- ☆27Updated 2 years ago
- A "Spring4Shell" vulnerability scanner.☆49Updated 6 months ago
- ☆56Updated this week
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆30Updated 2 years ago
- a simple discovery script that uses popular tools like subfinder, amass, puredns, alterx, massdns and others☆78Updated last year
- Red Team tools, infrastructure, and hardware weaponized☆106Updated last month
- Script to automate, when possible, the passive reconnaissance performed on a website prior to an assessment.☆37Updated 2 weeks ago
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆39Updated 2 years ago
- Enumerate AWS permissions and resources.☆70Updated 3 years ago
- OWASP Foundation Web Respository☆36Updated 3 years ago
- CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to …☆125Updated last year
- Simple bash Script to automate initial recon using (httpx, puredns, regulator, wayback, katana, aquatone)☆34Updated 4 months ago
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆72Updated 3 years ago
- Zed Attack Proxy Scripts for finding CVEs and Secrets.☆128Updated 3 years ago
- This is vulnerable microservice written in many language to demonstrating OWASP API Top Security Risk (under development)☆44Updated 2 years ago
- First iteration of ML based Feedback WAF☆59Updated last year
- ☆119Updated 2 years ago
- Fast website scraper and wordlist generator☆81Updated 3 months ago
- PassMute - A multi featured Password Transmutation/Mutator Tool☆52Updated 2 years ago
- CLI & library to search for default credentials among thousands of Products / Vendors☆67Updated 4 years ago