akto-api-security / tests-libraryLinks
Community generated list of API security tests to find OWASP top10, HackerOne top 10 vulnerabilities
☆42Updated this week
Alternatives and similar repositories for tests-library
Users that are interested in tests-library are comparing it to the libraries listed below
Sorting:
- Create your own recon & vulnerability scanner with Trickest and GitHub☆48Updated 2 years ago
- Performing automated scan using Burp Suite Pro & Vmware Burp Rest API☆52Updated 3 years ago
- Bcheck scripts for Burp☆28Updated last year
- Execute Trickest workflows right from your terminal☆95Updated last month
- yataf extracts secrets and paths from files or urls - its best used against javascript files☆52Updated last year
- List all public repositories for (valid) GitHub usernames☆76Updated 2 years ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆31Updated 2 years ago
- A list of threat sinks used in the manual security source code review for application security☆73Updated 2 years ago
- Dependency Confusion Security Testing Tool☆51Updated 3 years ago
- vīlicus is a bug bounty api dashboard☆41Updated 2 years ago
- 🔭 Collection of regexp pattern for security passive scanning☆115Updated 2 years ago
- Monitoring the Cloud Landscape☆91Updated this week
- ☆58Updated last year
- A Burp Suite Extension for parsing Project Files from the CLI.☆87Updated last week
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆80Updated 2 years ago
- Trickest Workflow for discovering log4j vulnerabilities and gathering the newest community payloads.☆112Updated 3 years ago
- A set of open-source community scripts☆65Updated last year
- Community Workflow for the Osmedeus Engine that describes basic reconnaissance methodology for you to build your own☆75Updated last year
- Deploy a SOCKS5 proxy in DigitalOcean and autoconfigure the Burp proxy settings to route all traffic through the droplet☆57Updated last year
- ☆95Updated 4 years ago
- Security Advisories☆35Updated 2 months ago
- ☆87Updated last year
- Droz_scan is a automated script, that runs all the queries of drozer in a single run☆26Updated 2 years ago
- Detects request smuggling via HTTP/2 downgrades.☆94Updated 3 years ago
- swagroutes is a command-line tool that extracts and lists API routes from Swagger files in YAML or JSON format.☆61Updated 2 years ago
- goverview - Get an overview of the list of URLs☆142Updated last month
- Some contributions in the nuclei-templates repository☆60Updated 3 years ago
- Basic Recon For Bug Bounty Hunter - "HuntTheBug" is Basic Scripts For Sub Domain Enumeration> Live Domain Enumeration > Sub Domain Hijack…☆55Updated 4 years ago
- A Burp Suite Extension for pentester and bug bounty hunters an to maintain checklist, map flows, write test cases and track vulnerabiliti…☆119Updated 2 years ago
- Running nuclei Continuously☆57Updated 3 years ago