APIsec|SCAN - Free API security testing using Github actions
☆103May 2, 2024Updated 2 years ago
Alternatives and similar repositories for free-API-security-test-action
Users that are interested in free-API-security-test-action are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆27Jul 15, 2026Updated last week
- See what your AI agents can access. Scan MCP configs for exposed secrets, shadow APIs, and AI models. Generate AI-BOMs for compliance.☆152May 12, 2026Updated 2 months ago
- Find and govern AI attack surfaces in application code at PR time. Free, OSS, runs offline.☆68Jul 18, 2026Updated last week
- This repository hosts several snippets and file related to the BsidesLV 2024 talk about Shadow and Zombie APIs by me☆18Aug 5, 2024Updated last year
- These are my personal notes for everything I learned regarding hacking APIs. Enjoy.☆21Mar 4, 2024Updated 2 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- взлом биткойн кошелька☆10Jan 10, 2026Updated 6 months ago
- Autonomous AI C2☆33Jul 23, 2024Updated 2 years ago
- Azure AppHunter is an open-source tool created for security researchers, red teamers and defenders to help them identify excessive privil…☆104May 31, 2026Updated last month
- Comprehensive AWS cloud reconnaissance and privilege escalation toolkit written in Python. Features IAM, EC2, S3, Lambda, ECS, Secrets Ma…☆50Jul 8, 2025Updated last year
- Kubernetes automated tasks☆19Dec 24, 2025Updated 7 months ago
- A package to create HTML MISP reports, including volume of trending events and attributes, evens received from key organisations and targ…☆12Aug 14, 2025Updated 11 months ago
- DelePwn is a security assessment tool designed to identify and demonstrate the risks associated with Google Workspace Domain-Wide Delegat…☆41Aug 8, 2025Updated 11 months ago
- A multi-threaded port scanner implementation in Python☆12May 30, 2023Updated 3 years ago
- HTTP Headers Security Cheat Sheet☆12Sep 25, 2021Updated 4 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆11Apr 21, 2022Updated 4 years ago
- A sysmon configuration designed for monitoring RMM solutions from the LOLRMM framework on the OS Microsoft Windows. 10/11☆33Feb 17, 2026Updated 5 months ago
- Vulnerable by Design AWS Cloud Development Kit (CDK) Infrastructure☆48Dec 29, 2023Updated 2 years ago
- Resources for Students in the Practical Webapp Security and Testing course☆23Oct 15, 2025Updated 9 months ago
- Inside403 is a powerful and versatile web security testing tool designed to assess the robustness of web pages and directories against 40…☆31Aug 30, 2023Updated 2 years ago
- Tool to download IP ranges of CDN providers for bug bounties☆14Jul 24, 2024Updated 2 years ago
- Terraform code and Sentinel policies for HashiConf-2019 talk/demo☆10Sep 23, 2019Updated 6 years ago
- Modern real world bug bounty payloads and exploitation techniques with may earn you some $$$.☆30Nov 7, 2023Updated 2 years ago
- API for Asset Service☆15Aug 15, 2024Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Web Crawler for Identifying Entry Points☆12Mar 26, 2024Updated 2 years ago
- A full insecure kubernetes application for testing security tools☆95Mar 28, 2026Updated 3 months ago
- ☆247Jan 23, 2025Updated last year
- Vulnerable REST API with OWASP top 10 vulnerabilities for security testing☆1,277Apr 7, 2026Updated 3 months ago
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a p…☆31Updated this week
- ☆20Jan 19, 2026Updated 6 months ago
- This script reads a text file containing domains, fetches the subdomains from crt.sh☆11May 31, 2023Updated 3 years ago
- Configuration Management (CM) Security Playground. A small enterprise security lab to practice automation + CM tooling like Ansible, Che…☆23Jul 21, 2025Updated last year
- AWS services enumerator for penetration testing☆21Nov 11, 2025Updated 8 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Acheron is a RESTful vulnerability assessment and management framework built around search and dedicated to terminal extensibility.☆37Jan 13, 2023Updated 3 years ago
- Automated web vulnerability scanning with LLM agents☆479Jun 18, 2025Updated last year
- Stack Based buffer overflow attack☆21Nov 25, 2023Updated 2 years ago
- Domain_checker application is the trial/demo version for the new EASM (External Attack Surface Management) system called HydrAttack (hydr…☆191Apr 29, 2024Updated 2 years ago
- Automate Recon XSS Bug Bounty☆191Mar 9, 2026Updated 4 months ago
- This repository contains my writeups for the labs in PortSwigger's Web Security Academy platform. Each lab writeup includes the lab's nam…☆110Jul 14, 2025Updated last year
- Search for sensitive data in Postman public library.☆218Jul 18, 2026Updated last week