david3107 / graphql-security-labsLinks
GraphQL security workshop labs
☆113Updated 2 weeks ago
Alternatives and similar repositories for graphql-security-labs
Users that are interested in graphql-security-labs are comparing it to the libraries listed below
Sorting:
- All Things Bug Bounty☆115Updated 3 years ago
- ☆100Updated last year
- ☆54Updated last year
- Prototype pollution scanner using headless chrome☆220Updated 3 years ago
- ☆127Updated 5 years ago
- A reverse whois tool based on Whoxy API.☆166Updated last year
- Awesome XSS Payloads☆84Updated 9 years ago
- A blazing fast & feature rich Amazon S3 bucket enumerator.☆98Updated 2 years ago
- The scripts I write to help me on my bug bounty hunting☆121Updated 3 years ago
- Advanced Reconnaissance and Web Application Discovery☆88Updated 3 years ago
- A Burp Suite extension for CSRF proof of concepts.☆52Updated 2 years ago
- Burp Extension for easily creating Wordlists☆211Updated 3 years ago
- A combined wordlists for files and directory discovery☆125Updated 4 years ago
- Quickly generate context-specific wordlists for content discovery from lists of URLs or paths☆229Updated 3 years ago
- DNS and Target HTTP History Local Storage and Search☆64Updated 4 years ago
- ASN reconnaissance script☆129Updated last year
- Adds a customizable "Send to..."-context-menu to your BurpSuite.☆163Updated 2 years ago
- Bug Bounty stuffs, payloads, scripts, profiles, tips and tricks, ...☆150Updated 5 years ago
- A list of Awesome Bughunting oneliners , collected from the various sources☆68Updated last year
- Just some public notes that can be useful and i want let the world knows.☆87Updated 4 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆132Updated 4 years ago
- Guide to SSRF☆70Updated last year
- ☆173Updated 4 years ago
- Tool to find the real IP behind CDNs/WAFs like cloudflare using passive recon by retrieving the favicon hash. For the same hash value, al…☆178Updated 4 years ago
- ☆10Updated 5 years ago
- Go scripts for checking API key / access token validity☆216Updated 4 years ago
- A script for installing private Burp Collaborator with free Let's Encrypt SSL-certificate☆210Updated last year
- A script that can resolve an input file of domains and scan them with masscan☆155Updated 4 years ago
- vulnerable OAuth 2.0 applications: understand the security implications of your OAuth 2.0 decisions.☆318Updated last year
- A tool to perform permutations, mutations and alteration of subdomains in golang.☆158Updated last year