bkimminich / webappsec-nutshellLinks
An ultra-compact intro (or refresher) to Web Application Security.
☆32Updated 7 years ago
Alternatives and similar repositories for webappsec-nutshell
Users that are interested in webappsec-nutshell are comparing it to the libraries listed below
Sorting:
- ☆200Updated 9 years ago
- Use burp's JS static code analysis on code from your local system.☆42Updated 8 years ago
- AutoTriageBot automatically verifies, deduplicates, and suggests payouts for incoming HackerOne reports.☆56Updated 3 years ago
- General scripts for random stuff☆38Updated 3 years ago
- Damn Vulnerable Node Application☆20Updated 9 years ago
- Overview Tooling Process Physical People☆46Updated 4 years ago
- CSV injection Vulnerable Script.☆29Updated 8 years ago
- Resources for developers and security engineers to learn the ropes of application security☆98Updated 6 years ago
- Watchtower is a Static Code Analysis tool designed to assist security auditors who are tasked with performing manual code reviews. It is …☆110Updated 8 years ago
- Content for OWASP Summit 2017 site☆128Updated 4 years ago
- Secure approach to secure file storage in untrusted environments.☆35Updated 6 years ago
- An example of obtaining RCE via Redis and CSRF☆76Updated 9 years ago
- Content for 'JIRA Risk Project' book published at LeanPub☆57Updated 7 years ago
- An extension for BurpSuite that highlights SSO messages in Burp's proxy window..☆118Updated 4 years ago
- Content for 'Measuring Software Quality using Application Security' book published at LeanPub☆38Updated 8 years ago
- DNS Enumeration and Reconnaissance Tool☆36Updated 9 years ago
- Deliberately vulnerable web application☆22Updated 8 years ago
- A tool to generate statistics and help manage bug bounty reports in HackerOne.☆22Updated 5 years ago
- A deliberately vulnerable modern day app with lots of DOM related bugs☆35Updated 6 years ago
- Integris Security Carbonator - The Burp Suite Pro extension that automates scope, spider & scan from the command line. Carbonator helps a…☆74Updated 7 years ago
- A static-code-analysis tool for performing security-focused code reviews. It enables an auditor to swiftly map the attack-surface of a la…☆141Updated last year
- ☆60Updated 7 years ago
- Encoder, Decoder, Converter, Calculator, TU WAS DU WILLST .. for various codings used in the wild wide web☆42Updated last year
- Network based protocol fuzzer☆74Updated 3 years ago
- ☆79Updated 12 years ago
- A tool to perform various OSINT techniques, aggregate all the raw data, visualise it on a dashboard, and facilitate alerting and monitori…☆31Updated 7 years ago
- Finds sensitive stuff in your git repository by specifying terms to look for☆31Updated 7 years ago
- Run DependencyCheck Against Your Orgs GitHub Repos.☆14Updated 7 years ago
- Puny Domain Name Check☆37Updated 6 years ago
- Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature☆25Updated 8 years ago