RetireJS / retire.js
scanner detecting the use of JavaScript libraries with known vulnerabilities. Can also generate an SBOM of the libraries it finds.
☆3,685Updated last week
Related projects ⓘ
Alternatives and complementary repositories for retire.js
- nodejsscan is a static security code scanner for Node.js applications.☆2,396Updated this week
- Web Application Security Scanner Framework☆3,776Updated last year
- Reconnaissance tool for GitHub organizations☆5,934Updated 2 years ago
- node security platform command-line tool☆1,664Updated 6 years ago
- Scan for misconfigured S3 buckets across S3-compatible APIs!☆2,559Updated this week
- The OWASP NodeGoat project provides an environment to learn how OWASP Top 10 security risks apply to web applications developed using Nod…☆1,885Updated 4 months ago
- Automated Security Testing For REST API's☆2,505Updated 5 months ago
- A tool to capture all the git secrets by leveraging multiple open source git searching tools☆1,110Updated 5 years ago
- Offensive Web Testing Framework (OWTF), is a framework which tries to unite great tools and make pen testing more efficient http://owtf.o…☆1,817Updated last week
- w3af: web application attack and audit framework, the open source web vulnerability scanner.☆4,572Updated last year
- A Tool for Domain Flyovers☆5,639Updated 2 years ago
- ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.☆2,292Updated last month
- Automated NoSQL database enumeration and web application exploitation tool.☆2,912Updated 3 months ago
- grep rough audit - source code auditing tool☆1,535Updated 3 months ago
- Subdomain Takeover tool written in Go☆1,909Updated last year
- ESLint rules for Node Security☆2,216Updated 3 weeks ago
- ZAP Add-ons☆836Updated this week
- Cross Site "Scripter" (aka XSSer) is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications…☆1,202Updated last month
- A collection of ZAP scripts and tips provided by the community - pull requests very welcome!☆787Updated last week
- Open Source Vulnerability Management Platform☆5,037Updated 2 weeks ago
- Scan your code for security misconfiguration, search for passwords and secrets.☆637Updated last year
- InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable…☆1,537Updated 4 months ago
- Awesome XSS stuff☆4,778Updated last week
- ☆1,236Updated 2 weeks ago
- The fastest and complete solution for domain recognition. Supports screenshoting, port scan, HTTP check, data import from other tools, su…☆3,311Updated 8 months ago
- Generates permutations, alterations and mutations of subdomains and then resolves them☆2,328Updated 6 months ago
- Nikto web server scanner☆8,579Updated last week
- Web application security scanner created by lcamtuf for google - Unofficial Mirror☆690Updated last year
- CORS Misconfiguration Scanner☆1,372Updated 2 years ago
- Damn Vulnerable NodeJS Application☆703Updated 7 months ago