david3107 / graphql-security-labs
GraphQL security workshop labs
☆102Updated 7 months ago
Alternatives and similar repositories for graphql-security-labs:
Users that are interested in graphql-security-labs are comparing it to the libraries listed below
- A Burp Suite extension for CSRF proof of concepts.☆49Updated last year
- Enhanced fork with logging, OpenAPI 3.0 and Python 3 for security monitoring workshops☆42Updated last year
- A reverse whois tool based on Whoxy API.☆162Updated 10 months ago
- A tool for append URLs, skipping duplicates/paths & combine parameters.☆120Updated 2 years ago
- ☆124Updated 4 years ago
- A blazing fast & feature rich Amazon S3 bucket enumerator.☆96Updated 2 years ago
- Script to test open Akamai ARL vulnerability.☆70Updated 3 years ago
- Webapp to search tips on Twitter through #bugbountytips☆70Updated 2 years ago
- ☆52Updated 4 years ago
- Get the scope of your bugcrowd programs☆66Updated 4 years ago
- All Things Bug Bounty☆113Updated 2 years ago
- A tool to perform permutations, mutations and alteration of subdomains in golang.☆157Updated last year
- ☆52Updated last year
- Sometimes we want to fuzz a set of sub-domain URLs with a common wordlist. Fuzzing them one by one is a tedious task, not to mention the …☆51Updated 3 years ago
- Unofficial documentation for the great tool Param Miner☆176Updated 2 years ago
- Takeover AWS ips and have a working POC for Subdomain Takeover.☆90Updated this week
- ☆99Updated last year
- ☆25Updated 4 years ago
- Some Tutorials and Things to Do while Hunting That Vulnerability.☆72Updated 4 years ago
- A simple way of sending messages from the CLI output to your Slack with webhook.☆116Updated last year
- ASN reconnaissance script☆124Updated last year
- s3 brute force tool☆44Updated 3 years ago
- Feed it a list of subdomains, it will resolve them and tell you which ones are internal☆91Updated 3 years ago
- DNS and Target HTTP History Local Storage and Search☆64Updated 4 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆130Updated 4 years ago
- HTTP parameter discovery suite.☆61Updated 4 years ago
- Just some public notes that can be useful and i want let the world knows.☆86Updated 4 years ago
- Find subdomains and takeovers.☆84Updated 2 years ago
- Cross Origin Resource Sharing MisConfiguration Scanner☆172Updated 3 years ago
- Vulnerable SAML infrastructure training applicaiton☆50Updated 2 years ago