bugcrowd / disclosure-policyLinks
Open Source Vulnerability Disclosure Framework. Maintained by Bugcrowd and Cipherlaw. Merged with https://github.com/disclose/dioterms.
☆132Updated 4 years ago
Alternatives and similar repositories for disclosure-policy
Users that are interested in disclosure-policy are comparing it to the libraries listed below
Sorting:
- A static-code-analysis tool for performing security-focused code reviews. It enables an auditor to swiftly map the attack-surface of a la…☆139Updated last year
- AutoTriageBot automatically verifies, deduplicates, and suggests payouts for incoming HackerOne reports.☆56Updated 3 years ago
- A collection of response templates for invalid bug bounty reports.☆91Updated 7 years ago
- Security Payload Unit Test Repository (SPUTR)☆86Updated 2 years ago
- The Unofficial Burp Extension for DNSDumpster.com☆70Updated 7 years ago
- Burp and ZAP plugin to analyse Content-Security-Policy headers or generate template CSP configuration from crawling a Website☆138Updated 5 years ago
- ReconJSON is a project dedicated to creating a flexible and consistent JSON format across popular recon tools.☆102Updated 6 years ago
- small script to detect web application firewall on any website☆42Updated 8 years ago
- AWS Extender CLI is a command-line script to test S3 buckets as well as Google Storage buckets and Azure Storage containers for common mi…☆83Updated 5 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆63Updated 2 years ago
- Scripts that we use for pentesting☆42Updated 8 years ago
- #legalbugbounty project — creating safe harbors on bug bounty programs and vulnerability disclosure programs. Authored by Amit Elazari.☆70Updated 5 years ago
- ☆12Updated 8 years ago
- A project designed to parse public source code repositories and find various types of vulnerabilities.☆192Updated 7 years ago
- The knife of the Admin & Security auditor☆42Updated 5 years ago
- A Firefox extension and WebSocket handler that checks S3/Google/Azure buckets while your browse.☆37Updated 5 years ago
- A security scanner for Wordpress blogging engine☆32Updated 9 years ago
- Use burp's JS static code analysis on code from your local system.☆42Updated 8 years ago
- ☆67Updated 7 years ago
- Extreme Vulnerable Node Application☆95Updated 6 years ago
- Simple wrapper for meg that sieves through meg's output for you.☆60Updated 5 years ago
- Common Findings Database☆101Updated 5 years ago
- ☆18Updated 5 years ago
- Microsoft Excel spreadsheets for consistent security evaluation of Android and iOS mobile applications☆50Updated 9 years ago
- User, contributor and developer friendly vulnerability database☆128Updated 6 years ago
- SharePoint scanner and fingerprinter based on WPScan☆25Updated 11 years ago
- ☆34Updated 4 years ago
- ☆90Updated 6 months ago
- Docker repository for OWTF (64-bit Kali)☆33Updated 5 years ago
- A collection of useful scripts for penetration testers☆83Updated 12 years ago