A pytest-inspired, DAST framework, capable of identifying vulnerabilities in a distributed, micro-service ecosystem through chaos engineering testing and stateful, Swagger fuzzing.
☆227Apr 2, 2026Updated 5 months ago
Alternatives and similar repositories for fuzz-lightyear
Users that are interested in fuzz-lightyear are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- RESTler is the first stateful REST API fuzzing tool for automatically testing cloud services through their REST APIs and finding security…☆2,940Jun 10, 2026Updated 2 months ago
- Send notifications on different channels such as Slack, Telegram, Discord etc.☆39Jan 12, 2026Updated 7 months ago
- Proof-of-concept code for research into GitHub Actions Cache poisoning.☆21Mar 9, 2025Updated last year
- Fuzz test your application using your OpenAPI or Swagger API definition without coding☆468Apr 13, 2026Updated 4 months ago
- OpenAPI 2.0 (Swagger) fuzzer written in python. Basically TnT for your API.☆110Dec 6, 2022Updated 3 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- A tool to list the SSH clone URLs for all GitHub repos for a given user☆13Feb 7, 2016Updated 10 years ago
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that improve an active and passive scanner by yourself. This …☆64Jan 17, 2022Updated 4 years ago
- A demo vulnerable application for stealing sensitive information by abusing Google Chrome cache☆20Jan 19, 2020Updated 6 years ago
- A repository teaching bss/data segment exploitation techniques.☆13Aug 11, 2019Updated 7 years ago
- 42Crunch API Security Platform Samples and Tutorials☆13Mar 31, 2026Updated 5 months ago
- Scripts to help with different ffuf tasks and workflows☆227Dec 24, 2023Updated 2 years ago
- QilingLab challenge writeup☆22Sep 25, 2021Updated 4 years ago
- A very vulnerable implementation of a GraphQL API.☆18Mar 27, 2026Updated 5 months ago
- Tool for CVE-2018-16323☆83Jan 17, 2019Updated 7 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A tool for analyzing the attack surface of an application☆19Mar 5, 2025Updated last year
- ☆56Jun 17, 2020Updated 6 years ago
- A very vulnerable implementation of a GraphQL API.☆62Nov 12, 2021Updated 4 years ago
- A horizontal and vertical web content enumerator☆53Apr 7, 2026Updated 4 months ago
- rapid content discovery tool for recursively querying webservers, handy in pentesting and web application assessments☆250Oct 15, 2019Updated 6 years ago
- ☆13Feb 12, 2024Updated 2 years ago
- Search exposed EBS volumes for secrets☆305Apr 24, 2023Updated 3 years ago
- Performing Buffer Overflow attack using stack smashing approach to obtain the shell. Given a C compiled vulnerable software, with the hel…☆17Oct 12, 2021Updated 4 years ago
- Monitoring GitHub for sensitive data shared publicly☆67Dec 20, 2021Updated 4 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Hsuan-Fuzz: REST API Fuzzing by Coverage Level Guided Blackbox Testing☆29May 14, 2022Updated 4 years ago
- InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable…☆1,804Jun 17, 2026Updated 2 months ago
- A highly configurable Framework for easy automated web scanning☆383Jul 13, 2020Updated 6 years ago
- ☆84Dec 5, 2019Updated 6 years ago
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆300Feb 12, 2023Updated 3 years ago
- A tool to scan for .DS_Store files on webservers☆35Mar 28, 2021Updated 5 years ago
- Swiftly search FDNS datasets from Rapid7 Open Data☆23Nov 20, 2022Updated 3 years ago
- Semgrep rules corresponding to the OWASP ASVS standard☆27Nov 2, 2020Updated 5 years ago
- ☆21Feb 25, 2022Updated 4 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Google Chrome Extension automates testing fundamental Web Problems via Chrome☆20Mar 18, 2021Updated 5 years ago
- ☆118Apr 14, 2020Updated 6 years ago
- A python tool which runs to display random publicly disclosed Hackerone reports when bored. Automatically opens the report in browser.(Ad…☆42Dec 8, 2022Updated 3 years ago
- A tool designed to assist with finding all sinks and sources of a web application and display these results in a digestible manner.☆560Mar 6, 2023Updated 3 years ago
- Offensive Terraform module which copies publicly exposed EBS snapshot to us-east-1 region in attacker's AWS account and creates EBS volum…☆14Sep 18, 2020Updated 5 years ago
- Piper Burp Suite Extender plugin☆128Jan 14, 2026Updated 7 months ago
- Vuldroid is a Vulnerable Android Application made with security issues in order to demonstrate how they can occur in code☆68Sep 18, 2021Updated 4 years ago