ShiftLeftSecurity / tarpit-java
Tarpit - A Web application seeded with vulnerabilities, rootkits, backdoors & data leaks
☆79Updated 2 years ago
Alternatives and similar repositories for tarpit-java:
Users that are interested in tarpit-java are comparing it to the libraries listed below
- All Things Bug Bounty☆114Updated 2 years ago
- GraphQL security workshop labs☆104Updated 9 months ago
- A Burp Suite extension for CSRF proof of concepts.☆50Updated last year
- ☆71Updated 4 years ago
- ☆78Updated last year
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆125Updated 2 years ago
- ☆100Updated last year
- Detectify Crowdsource Challenge☆69Updated 2 years ago
- AWS S3 open bucket poc automated script.☆57Updated 3 years ago
- A burpsuite extension that helps security researchers find public security reports published on h1 based on the selected host☆42Updated 4 years ago
- Script to test open Akamai ARL vulnerability.☆71Updated 3 years ago
- Vulnerable SAML infrastructure training applicaiton☆51Updated 2 years ago
- This lab is created to demonstrate pass-the-hash, blind sql and SSTI vulnerabilities☆91Updated last year
- HTTP parameter discovery suite.☆63Updated 4 years ago
- xss development frameworks, with the goal of making payload writing easier.☆141Updated 8 months ago
- Enhanced fork with logging, OpenAPI 3.0 and Python 3 for security monitoring workshops☆42Updated last year
- ☆65Updated 2 years ago
- A Burp Suite Extension for parsing Project Files from the CLI.☆87Updated 6 months ago
- Misc bounty and vulndisc things☆84Updated 4 years ago
- vulnerable OAuth 2.0 applications: understand the security implications of your OAuth 2.0 decisions.☆316Updated last year
- Mapping from bug bounty and vulnerability disclosure programs to respective GitHub organizations☆59Updated this week
- A simple Bash one liner with aim to automate CRLF vulnerability scanning.☆69Updated 4 years ago
- Takeover AWS ips and have a working POC for Subdomain Takeover.☆91Updated 2 months ago
- A collection of over 5.1 million sub-domains and assets belonging to public bug bounty programs, compiled into a repo, for performing bul…☆99Updated 3 years ago
- MetaSec.js combines all the free open-source security tools to identify issues with JavaScript and automates the boring parts☆80Updated 2 years ago
- Summary of almost all paid bounty reports on H1☆40Updated 4 years ago
- A reverse whois tool based on Whoxy API.☆166Updated last year
- ☆130Updated 4 years ago
- Sometimes we want to fuzz a set of sub-domain URLs with a common wordlist. Fuzzing them one by one is a tedious task, not to mention the …☆51Updated 3 years ago
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆79Updated last year