Security-Knowledge-Framework / Labs
Monorepo of Labs for the Security Knowledge Framework (SKF)
☆33Updated 6 months ago
Alternatives and similar repositories for Labs:
Users that are interested in Labs are comparing it to the libraries listed below
- Semgrep rules corresponding to the OWASP ASVS standard☆27Updated 4 years ago
- OWASP ASVS Security Evaluation Templates with Nuclei☆29Updated this week
- Additional active scan checks for BURP☆26Updated 4 months ago
- This repository hosts several snippets and file related to the BsidesLV 2024 talk about Shadow and Zombie APIs by me☆17Updated 6 months ago
- GCP GOAT is the vulnerable application for learn the GCP Security☆63Updated last year
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagrams☆101Updated 3 weeks ago
- Paramalyzer - Burp extension for parameter analysis of large-scale web application penetration tests.☆32Updated 2 years ago
- OWASP Foundation Web Respository☆19Updated last month
- A collection of my Semgrep rules☆48Updated last year
- This is vulnerable microservice written in many language to demonstrating OWASP API Top Security Risk (under development)☆43Updated 2 years ago
- ☆109Updated last year
- Damn Vulnerable SCA Application☆30Updated 2 months ago
- My personal collection of resources (mostly tools and training materials) for source code security audits.☆65Updated 6 months ago
- An extension to use Semgrep inside Burp Suite.☆88Updated last year
- Nuclei plugins to audit Chrome extensions☆63Updated 7 months ago
- Enhanced fork with logging, OpenAPI 3.0 and Python 3 for security monitoring workshops☆42Updated last year
- Performing automated scan using Burp Suite Pro & Vmware Burp Rest API☆49Updated 2 years ago
- Blogpost series showcasing interesting cloud - web app security bugs☆47Updated last year
- Contains all my research and content produced regarding the log4shell vulnerability☆31Updated 3 years ago
- A collection of Semgrep rules which followed security guidelines for .NET and Java.☆17Updated 3 years ago
- The IoT Security Testing Guide (ISTG) provides a comprehensive methodology for penetration tests in the IoT field, offering flexibility t…☆95Updated 4 months ago
- Regex patterns for manual application source code review☆27Updated 4 years ago
- HazProne is a Cloud Pentesting Framework that emulates close to Real-World Scenarios by deploying Vulnerable-By-Demand AWS resources enab…☆39Updated 2 years ago
- Checks whether a domain is hosted on a cloud service such as AWS, Azure or CloudFlare☆58Updated 2 years ago
- Build a CVE library with aggregated CISA, EPSS and CVSS data☆27Updated last year
- InfoSec OpenAI Examples☆19Updated last year
- ☆75Updated last year
- ☆90Updated 3 years ago
- ☆55Updated 2 months ago
- ☆73Updated 7 months ago