akto-api-security / tests-libraryLinks
Community generated list of API security tests to find OWASP top10, HackerOne top 10 vulnerabilities
β40Updated this week
Alternatives and similar repositories for tests-library
Users that are interested in tests-library are comparing it to the libraries listed below
Sorting:
- Execute Trickest workflows right from your terminalβ93Updated 2 months ago
- π Collection of regexp pattern for security passive scanningβ117Updated 2 years ago
- Create your own recon & vulnerability scanner with Trickest and GitHubβ48Updated 2 years ago
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response maβ¦β79Updated 2 years ago
- OWASP ASVS Security Evaluation Templates with Nucleiβ41Updated 2 weeks ago
- yataf extracts secrets and paths from files or urls - its best used against javascript filesβ53Updated last year
- Dependency Confusion Security Testing Toolβ51Updated 3 years ago
- Performing automated scan using Burp Suite Pro & Vmware Burp Rest APIβ52Updated 3 years ago
- List all public repositories for (valid) GitHub usernamesβ76Updated 2 years ago
- A list of threat sinks used in the manual security source code review for application securityβ73Updated 2 years ago
- A projectdiscovery driven attack surface monitoring bot powered by axiomβ191Updated 3 years ago
- Monitoring the Cloud Landscapeβ88Updated this week
- Deploy a SOCKS5 proxy in DigitalOcean and autoconfigure the Burp proxy settings to route all traffic through the dropletβ58Updated 11 months ago
- Community Workflow for the Osmedeus Engine that describes basic reconnaissance methodology for you to build your ownβ75Updated last year
- goverview - Get an overview of the list of URLsβ142Updated 2 years ago
- A Burp Suite Extension for pentester and bug bounty hunters an to maintain checklist, map flows, write test cases and track vulnerabilitiβ¦β117Updated 2 years ago
- Bcheck scripts for Burpβ29Updated last year
- A tool that automates the search for IDOR vulnerabilities in web apps and APIsβ59Updated 4 years ago
- Running nuclei Continuouslyβ57Updated 2 years ago
- Trickest Workflow for discovering log4j vulnerabilities and gathering the newest community payloads.β112Updated 3 years ago
- A Burp Suite Extension for parsing Project Files from the CLI.β87Updated last year
- Nuclear Pond is a utility leveraging Nuclei to perform internet wide scans for the cost of a cup of coffee.β185Updated last year
- vΔ«licus is a bug bounty api dashboardβ40Updated 2 years ago
- Tool for helping in the exploitation of path traversal vulnerabilities in Java web applicationsβ32Updated 2 years ago
- β84Updated last year
- ai-based domain name generationβ95Updated 8 months ago
- An extension to use Semgrep inside Burp Suite.β89Updated 4 months ago
- swagroutes is a command-line tool that extracts and lists API routes from Swagger files in YAML or JSON format.β60Updated 2 years ago
- β32Updated last year
- A set of open-source community scriptsβ65Updated last year