djadmin / vulnerable-appLinks
A sample web application using Node.js, Express and Angular that is vulnerable to common security vulnerabilities.
☆10Updated 2 years ago
Alternatives and similar repositories for vulnerable-app
Users that are interested in vulnerable-app are comparing it to the libraries listed below
Sorting:
- A very vulnerable implementation of a GraphQL API.☆61Updated 4 years ago
- Security test tool for Blind XSS☆26Updated 5 years ago
- Purposely vulnerable Java application to help lead secure coding workshops☆191Updated last year
- Jekyll Files for cloudsecwiki.com☆49Updated 4 years ago
- Lab that will help you to understand how type juggling vulnerability works.☆22Updated 5 years ago
- Bug Bounty Tools☆34Updated 5 years ago
- ☆32Updated 6 years ago
- A collection of my Semgrep rules☆51Updated 2 years ago
- Burp Scanner extension to fingerprint and actively scan instances of the Adobe Experience Manager CMS. It checks the website for common m…☆75Updated last year
- Push notifications to Slack channel or to custom server based on BurpSuite response conditions.☆17Updated 5 years ago
- ☆87Updated last year
- ☆60Updated last year
- ☆11Updated 2 years ago
- Extract SSL certificate data (Subject Name, Subject Alt Names, Organisation)☆42Updated 2 months ago
- XSSor is a semi-automatic reflected and persistent XSS detector extension for Burp Suite. The tool was written in Python by Barak Tawily,…☆62Updated 4 years ago
- A colorful cross-platform python script to test misconfigurations of AWS S3 buckets both through authenticated and unauthenticated checks…☆39Updated 4 years ago
- Source for Pentester Land☆39Updated 3 years ago
- a tool that compiles a csv of all h1 program stats☆49Updated 2 years ago
- A Burp Suite extension which performs checks for cross-domain scripting against the DOM, subresource integrity checks, and evaluates Java…☆26Updated 3 years ago
- CVE, reports, research☆15Updated 4 years ago
- In this repository I'll host my research and methodologies for auditing vulnerabilities☆29Updated 6 years ago
- Script will enumerate domain name using horizontal enumeration, reverse lookup. Each horziontal domain will then be vertically enumerated…☆31Updated 6 years ago
- Burp extension to generate multi-step CSRF POC.☆31Updated 6 years ago
- finds hidden parameters☆23Updated 2 years ago
- Community generated list of API security tests to find OWASP top10, HackerOne top 10 vulnerabilities☆41Updated this week
- Wordlists for Bug Bounty☆23Updated 6 years ago
- ☆19Updated 4 years ago
- web-based-fuzzer☆32Updated 5 years ago
- A command-line tool for Cross-Site WebSocket Hijacking☆44Updated 2 years ago
- ☆19Updated 4 years ago