disclose / research-threats
Collection of legal threats against good faith Security Researchers; vulnerability disclosure gone wrong. A continuation of work started by @attritionorg
☆293Updated last year
Alternatives and similar repositories for research-threats:
Users that are interested in research-threats are comparing it to the libraries listed below
- A bash script that automates the exfiltration of data over dns in case we have blind command execution on a server with egress filtering☆209Updated 4 years ago
- Private key usage verification☆419Updated last month
- One-stop TLS traffic inspection and manipulation using dynamic instrumentation☆240Updated 2 years ago
- TLS-Anvil, a fully automated TLS testsuite for client and servers.☆91Updated 11 months ago
- Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration☆289Updated this week
- An open source intelligence tool to crawl the graph of certificate Alternate Names☆346Updated 11 months ago
- CQ, a code security scanner☆98Updated 8 months ago
- This repo contains logstash of various honeypots☆174Updated 4 years ago
- Tool to find common vulnerabilities in cryptographic public keys☆264Updated this week
- Whalescan is a vulnerability scanner for Windows containers, which performs several benchmark checks, as well as checking for CVEs/vulner…☆154Updated last year
- Trail of Bits Testing Handbook☆60Updated last week
- Binary Golf Grand Prix☆111Updated last year
- search Google and extract results directly. skip all the click-through links and other sketchiness☆495Updated 2 years ago
- Methodology for high-quality web application security testing - https://github.com/tprynn/web-methodology/wiki☆202Updated 2 months ago
- ☆45Updated 3 years ago
- A small collection of potentially useful contract templates☆382Updated 2 years ago
- ☆227Updated last year
- Search for vulnerabilities and exposures while filtering based on age, keywords, and other parameters.☆123Updated 2 years ago
- ☆83Updated 7 months ago
- truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)☆113Updated last year
- Database of polyglot files. By polyglot, we mean files readable in multiple formats☆128Updated 6 years ago
- Corsair_scan is a security tool to test Cross-Origin Resource Sharing (CORS).☆123Updated last year
- The open ransomware payment tracker☆91Updated 2 months ago
- Web-Scale NoSQL Idempotent Cloud-Native Big-Data Serverless Plaintext Credential Search☆181Updated last year
- An Open Letter to the OWASP Board☆106Updated last year
- Burp with Friends☆100Updated 2 years ago
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆138Updated 3 years ago