cxai / Checkmarx-PowerToolsLinks
A collection of various scripts and automations to simplify Checkmarx SAST and IAST setup and use
☆14Updated 7 years ago
Alternatives and similar repositories for Checkmarx-PowerTools
Users that are interested in Checkmarx-PowerTools are comparing it to the libraries listed below
Sorting:
- HTML5 WebSocket message fuzzer☆148Updated 7 years ago
- DEF CON 26 Workshop - Attacking & Auditing Docker Containers Using Open Source☆109Updated 6 years ago
- Automated SonarQube☆70Updated 6 years ago
- An example project that exploits the default typing issue in Jackson-databind via Spring application contexts and expressions☆124Updated 7 years ago
- Burp Suite extension for JAX-RS☆65Updated 8 years ago
- Automate security tests using Burp Suite.☆232Updated last year
- Jira未授权SSRF漏洞☆31Updated 6 years ago
- some codeql rules☆15Updated 5 years ago
- JWT Fuzzer for BurpSuite. Adds an Intruder hook for on-the-fly JWT fuzzing.☆100Updated 6 years ago
- Jsdir is a Burp Suite extension that extracts hidden paths from js files and beautifies it for further reading.☆120Updated 5 years ago
- XSS payloads for edge cases☆34Updated 7 years ago
- Tool for CVE-2018-16323☆82Updated 6 years ago
- This repo contains the files required to perform a CSRF attack using Flash and HTTP 307 redirections.☆77Updated 7 years ago
- Phantom eye——A passive business logic vulnerability auditing tool☆55Updated 6 years ago
- Another plugin for CRLF vulnerability detection☆25Updated 8 years ago
- Burp Suite extension to passively scan for applications revealing server error messages☆64Updated 2 years ago
- Java serialization brute force attack tool.☆123Updated 8 years ago
- CORS checking☆34Updated 7 years ago
- Security Development LifeCycle Process (安全开发生命周期参考)☆27Updated 7 years ago
- A server vulnerable to XXE that can be used to test payloads using the xxer tool.☆26Updated 7 years ago
- Hacking Facebook for fun and profit: It’s not that hard, apparently (exclusive)☆62Updated 6 years ago
- A custom web vulnerability scanner☆28Updated 7 years ago
- ☆43Updated 5 years ago
- Cross Site Scripting Payloads -- Variations☆72Updated 8 months ago
- Vulnerabilities which found in Oracle products☆33Updated 6 years ago
- Simple Server Side Request Forgery services enumeration tool.☆55Updated 7 years ago
- A tool for detecting XML External Entity (XXE) vulnerabilities in Java applications☆72Updated 11 years ago
- ☆76Updated 12 years ago
- Scans tcl for command injection☆36Updated 6 years ago
- Ghazi is a BurpSuite Plugins For Testing various PayLoads Like "XSS,SQLi,SSTI,SSRF,RCE and LFI" through Different tabs , Where Each Tab W…☆107Updated 6 years ago