SasanLabs / VulnerableApp-facade
VulnerableApp-facade is probably most modern lightweight distributed farm of Vulnerable Applications built for handling wide range of vulnerabilities across tech stacks.
☆47Updated last year
Alternatives and similar repositories for VulnerableApp-facade:
Users that are interested in VulnerableApp-facade are comparing it to the libraries listed below
- Performing automated scan using Burp Suite Pro & Vmware Burp Rest API☆49Updated 2 years ago
- Jumpstart multiple WebSocket servers quickly☆31Updated 3 years ago
- Target practice for ffuf☆60Updated 3 years ago
- 🖇 Enumerate git repository URL from list of URL / User / Org. Friendly to pipeline☆59Updated last month
- A collection of one off hacks and simple scripts☆28Updated last year
- yataf extracts secrets and paths from files or urls - its best used against javascript files☆51Updated 3 months ago
- Create your own recon & vulnerability scanner with Trickest and GitHub☆49Updated last year
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆27Updated last year
- Enhanced fork with logging, OpenAPI 3.0 and Python 3 for security monitoring workshops☆42Updated 10 months ago
- Community generated list of API security tests to find OWASP top10, HackerOne top 10 vulnerabilities☆35Updated this week
- Examples of different vulnerabilities, in a variety of languages, shapes and sizes.☆27Updated 10 months ago
- Regex patterns for manual application source code review☆26Updated 4 years ago
- Simultaneously execute various subdomain enumeration tools and aggregate results.☆43Updated 6 months ago
- EvenBetterExtensions allows you to quicky install and keep updated Caido extensions.☆23Updated 3 months ago
- 🔭 Collection of regexp pattern for security passive scanning☆115Updated last year
- ☆66Updated 3 years ago
- swagroutes is a command-line tool that extracts and lists API routes from Swagger files in YAML or JSON format.☆55Updated last year
- Checks whether a domain is hosted on a cloud service such as AWS, Azure or CloudFlare☆58Updated 2 years ago
- Script to automate, when possible, the passive reconnaissance performed on a website prior to an assessment.☆37Updated last week
- part of my wordlist to bruteforce DNS to find subdoamains.☆62Updated 3 years ago
- Penetration Testing Checklist☆35Updated 4 years ago
- 🐑 Websheep is an app based on a willingly vulnerable ReSTful APIs.☆53Updated 9 months ago
- Community Workflow for the Osmedeus Engine that describes basic reconnaissance methodology for you to build your own☆70Updated 8 months ago
- Resolvers updated daily for reconftw☆46Updated last year
- Additional active scan checks for BURP☆20Updated 3 months ago
- OWASP Foundation Web Respository☆23Updated 7 months ago
- security.txt collection of most popular world-wide domains☆52Updated last year
- Paramalyzer - Burp extension for parameter analysis of large-scale web application penetration tests.☆32Updated 2 years ago
- ☆73Updated last year