cxai / Checkmarx-PowerToolsLinks
A collection of various scripts and automations to simplify Checkmarx SAST and IAST setup and use
☆14Updated 6 years ago
Alternatives and similar repositories for Checkmarx-PowerTools
Users that are interested in Checkmarx-PowerTools are comparing it to the libraries listed below
Sorting:
- Jekyll Files for cloudsecwiki.com☆50Updated 3 years ago
- Automated SonarQube☆73Updated 6 years ago
- Vulnerable Java based Web Application☆31Updated 6 years ago
- DEF CON 26 Workshop - Attacking & Auditing Docker Containers Using Open Source☆108Updated 5 years ago
- An example project that exploits the default typing issue in Jackson-databind via Spring application contexts and expressions☆123Updated 7 years ago
- Cross Site Scripting Payloads -- Variations☆72Updated 2 months ago
- Burp Suite extension to passively scan for applications revealing server error messages☆66Updated last year
- ☆13Updated 4 years ago
- A proof-of-concept tool for detection and exploitation Object Injection Vulnerabilities in .NET applications☆63Updated 4 years ago
- Record some Vulnerabilities☆44Updated 2 years ago
- BSidesSF CTF 2019 release☆71Updated 2 years ago
- Repository to showcase various configuration recipes with various technologies☆36Updated 2 years ago
- A server vulnerable to XXE that can be used to test payloads using the xxer tool.☆26Updated 7 years ago
- Manual JavaScript Linting is a Bug☆49Updated 4 years ago
- Burp Suite extension for JAX-RS☆65Updated 8 years ago
- Custom Fortify SCA rules to detect common JSSE certification validation flaws☆11Updated 9 years ago
- Jira未授权SSRF漏洞☆31Updated 5 years ago
- A static analysis API for finding deserialization attack gadgets☆38Updated 2 years ago
- Exports vulnerability scan data from the Checkmarx SAST platform for use in analytical tools.☆19Updated 7 months ago
- Sample Spring Boot App Demonstrating RCE via Exposed env Actuator and H2 Database☆107Updated 5 years ago
- Burp extension to passively scan for applications revealing software version numbers☆31Updated last year
- ☆43Updated 5 years ago
- Adds extensibility to Burp by using a list of payloads to pattern match on HTTP responses highlighting interesting and potentially vulner…☆15Updated last year
- ☆76Updated 11 years ago
- An example repository that demonstrates how the build custom CodeQL bundles that include query customizations through the `Customizations…☆25Updated 2 years ago
- HTML5 WebSocket message fuzzer☆146Updated 6 years ago
- A Burp extension to show the Collaborator client in a tab☆36Updated 2 years ago
- JWT fuzzer☆107Updated 6 years ago
- Vulnerability consolidation and management tool, enhances scan results by merging different findings of the same weakness across multiple…☆24Updated 2 years ago
- RCE Exploit PoC for Spring based RESTFul APIs using XStream as Unmarshaler☆20Updated 11 years ago