bkimminich / webappsec-nutshell
An ultra-compact intro (or refresher) to Web Application Security.
☆31Updated 7 years ago
Alternatives and similar repositories for webappsec-nutshell:
Users that are interested in webappsec-nutshell are comparing it to the libraries listed below
- Collection of tools for web recon and enumeration.☆56Updated 9 years ago
- Puny Domain Name Check☆36Updated 5 years ago
- Finds sensitive stuff in your git repository by specifying terms to look for☆31Updated 7 years ago
- automato should help with automating some of the user-focused enumeration tasks during an internal penetration test.☆72Updated 5 years ago
- Burp Notes Extension is a plugin for Burp Suite that adds a Notes tab. The tool aims to better organize external files that are created d…☆67Updated 9 months ago
- Checklist intended to be used as a baseline for assessing, designing, and testing the security of a MAM (Application Wrapping) solution☆19Updated 9 years ago
- Use burp's JS static code analysis on code from your local system.☆42Updated 8 years ago
- A collection of scripts that I've written while pentesting.☆31Updated 6 years ago
- CSV injection Vulnerable Script.☆29Updated 7 years ago
- Run DependencyCheck Against Your Orgs GitHub Repos.☆14Updated 7 years ago
- This is a container of web applications that work with OWASP Bug Bounty for Projects☆32Updated 2 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆36Updated 5 years ago
- Security Product Taskbar Icons (to identify from screenshots)☆57Updated 4 years ago
- Mobile Incident Response Book☆61Updated 8 years ago
- ☆13Updated 7 years ago
- Watchtower is a Static Code Analysis tool designed to assist security auditors who are tasked with performing manual code reviews. It is …☆112Updated 7 years ago
- MoneyX is an intentionally vulnerable JSP application used for training developers in application security concepts.☆31Updated 8 years ago
- PortPlow is a distributed port and system scanning & enumeration service. It enables the quick and automated enumeration of ports and ser…☆53Updated 3 months ago
- CTF website frontend for SecGen☆21Updated 7 years ago
- DNS Enumeration and Reconnaissance Tool☆37Updated 9 years ago
- Exploits and research stuffs☆54Updated last year
- AutoTriageBot automatically verifies, deduplicates, and suggests payouts for incoming HackerOne reports.☆56Updated 3 years ago
- BlindRef serves as the basis for an automated Blind-Based XXE Exploitation Framework☆26Updated 8 years ago
- Six Degrees of Domain Admin☆15Updated 7 years ago
- Damn Vulnerable Node Application☆19Updated 9 years ago
- ☆13Updated 7 years ago
- Fingerprint a web app using local files as the fingerprint sources☆38Updated 7 years ago
- The Unofficial Burp Extension for DNSDumpster.com☆70Updated 7 years ago
- ☆27Updated 7 years ago
- Materials related to the 2017 BSides Las Vegas presentation☆51Updated 4 years ago