Stop half-done APIs! Cherrybomb is a CLI tool that helps you avoid undefined user behaviour by auditing your API specifications, validating them and running API security tests.
☆1,238Oct 25, 2024Updated last year
Alternatives and similar repositories for cherrybomb
Users that are interested in cherrybomb are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- HashiCorp-relevant rules for the Semgrep code analysis tool☆42Oct 3, 2023Updated 2 years ago
- Inspektor is a protocol-aware proxy that is used to enforce access policies👮☆285Jul 15, 2022Updated 4 years ago
- Vulnerable REST API with OWASP top 10 vulnerabilities for security testing☆1,330Apr 7, 2026Updated 5 months ago
- Metlo is an open-source API security platform.☆1,787Jul 25, 2025Updated last year
- An API security tool to capture and analyze API traffic, test API endpoints, reconstruct Open API specification, and identify API securit…☆576Oct 8, 2024Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Orchestrate end-to-end encryption, cryptographic identities, mutual authentication, and authorization policies between distributed applic…☆4,635Jan 4, 2026Updated 8 months ago
- A fast, simple, recursive content discovery tool written in Rust.☆8,080Sep 5, 2026Updated 2 weeks ago
- Imperva's customizable API attack tool takes an API specification as an input, generates and runs attacks that are based on it as an outp…☆496May 13, 2023Updated 3 years ago
- Akto is the fastest growing AI Security platform for your teams to secure AI agents, MCPs, LLMs, Agent skills, Gen AI apps in your organi…☆1,518Updated this week
- Contextual Content Discovery Tool☆3,265Jul 10, 2026Updated 2 months ago
- A collection of awesome API Security tools and resources. The focus goes to open-source tools and resources that benefit all the communit…☆3,862May 1, 2026Updated 4 months ago
- Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.☆16,723Updated this week
- A very vulnerable implementation of a GraphQL API.☆63Nov 12, 2021Updated 4 years ago
- Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.☆2,340Feb 21, 2026Updated 7 months ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- A list of open source web security scanners☆1,618Apr 29, 2025Updated last year
- Nuclei plugins to audit Chrome extensions☆66Jul 16, 2024Updated 2 years ago
- A secure command-line tool for managing environment variables☆991Jun 23, 2026Updated 3 months ago
- Obtain GraphQL API schema even if the introspection is disabled☆1,525Dec 5, 2025Updated 9 months ago
- Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.☆2,747Updated this week
- Find secrets with Gitleaks 🔑☆29,427Sep 9, 2026Updated 2 weeks ago
- 🔑 Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials.☆428Jul 21, 2026Updated 2 months ago
- Stretto is a Rust implementation for Dgraph's ristretto (https://github.com/dgraph-io/ristretto). A high performance memory-bound Rust ca…☆435May 3, 2026Updated 4 months ago
- A highly customizable Changelog Generator that follows Conventional Commit specifications ⛰️☆12,258Updated this week
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- 🤖 The Modern Port Scanner 🤖☆20,438Updated this week
- API Security Project aims to present unique attack & defense methods in API Security field☆1,448Mar 5, 2024Updated 2 years ago
- Cloudlist is a tool for listing Assets from multiple Cloud Providers.☆1,052Sep 14, 2026Updated last week
- Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastruct…☆2,704Updated this week
- Fuzz test your application using your OpenAPI or Swagger API definition without coding☆467Apr 13, 2026Updated 5 months ago
- A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.☆878Sep 12, 2026Updated last week
- Hunt every Endpoint in your code, expose Shadow APIs, map the Attack Surface.☆1,431Updated this week
- A vulnerability scanner for container images and filesystems☆12,916Updated this week
- Simple, Fast, Code first and Compile time generated OpenAPI documentation for Rust☆4,099Sep 16, 2026Updated last week
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Find, verify, and analyze leaked credentials☆28,020Updated this week
- Spin is the open source developer tool for building and running serverless applications powered by WebAssembly.☆6,515Updated this week
- Rust newtype with guarantees 🇺🇦 🦀☆1,770Updated this week
- WIP OpenAPI tooling for Rust.☆969Apr 20, 2026Updated 5 months ago
- A container runtime written in Rust☆7,611Updated this week
- Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assets☆887Aug 31, 2026Updated 3 weeks ago
- A set of tools and libraries for automatically generating and initiating sandboxes for Rust programs☆15Oct 24, 2022Updated 3 years ago