cyph / appsec-gloryLinks
Consolidated demo and source links from Bryant Zadegan and Ryan Lester's Black Hat / DEF CON talk "Abusing Bleeding Edge Web Standards for AppSec Glory".
☆11Updated 8 years ago
Alternatives and similar repositories for appsec-glory
Users that are interested in appsec-glory are comparing it to the libraries listed below
Sorting:
- AWS Metadata Proxy for protection against SSRF☆68Updated 5 years ago
- Minion☆355Updated 6 years ago
- a grep -r for secrets☆178Updated 3 years ago
- Threat Specification Language☆28Updated 10 years ago
- INACTIVE - Security Testing Tool☆107Updated 9 years ago
- Notes and reference for ongoing forecasting.☆16Updated 3 years ago
- Fuzzing things with afl and python-afl☆59Updated 9 years ago
- Repoguard is a simple tool to check and alert on interesting changes in a git repository.☆48Updated 8 years ago
- Community rules for Commit Watcher☆24Updated 9 years ago
- Time Trial - A tool for performing feasibility analyses of timing attacks☆84Updated 11 years ago
- Portcullis Computer Security Co-ordinated Disclosure Toolkit☆24Updated 8 months ago
- Mittn: Security test tool runner for test automation in CI☆197Updated 2 years ago
- AWS Red Team Orchestration Framework☆102Updated 8 years ago
- INACTIVE - Collection of Tools & Procedures for double checking GitHub configurations☆137Updated last year
- sleepy puppy docker setup☆44Updated 7 years ago
- Python module for evaluation of AWS account best practices around incident handling readieness.☆55Updated 5 years ago
- Auditing & Hardening script for Kubernetes☆46Updated 7 years ago
- Find ssh keys with no passwords and try them against a bunch of hosts.☆46Updated 10 years ago
- A place for documenting threats and mitigations related to containers orchestrators (Kubernetes, Swarm etc)☆25Updated 7 years ago
- A static-code-analysis tool for performing security-focused code reviews. It enables an auditor to swiftly map the attack-surface of a la…☆141Updated last year
- Content for 'JIRA Risk Project' book published at LeanPub☆57Updated 7 years ago
- A collection of Ansible roles for automating infosec builds.☆92Updated 8 years ago
- Jump to Full Encryption☆61Updated 9 years ago
- Frankencert - Adversarial Testing of Certificate Validation in SSL/TLS Implementations☆181Updated 2 years ago
- ☆78Updated 10 years ago
- A toolkit to generate an offline Chrome extension to detect phishing attacks using a bespoke convolutional neural network.☆132Updated 8 years ago
- An actuary is a business professional who analyzes the financial consequences of risk.☆81Updated 8 years ago
- An attack tree generator built on electron☆62Updated 9 years ago
- A simple ssh private key password recovery tool written in Go☆22Updated 2 years ago
- A Security Scanner for Go☆26Updated 6 years ago