djadmin / vulnerable-app
A sample web application using Node.js, Express and Angular that is vulnerable to common security vulnerabilities.
☆10Updated last year
Alternatives and similar repositories for vulnerable-app
Users that are interested in vulnerable-app are comparing it to the libraries listed below
Sorting:
- Bug Bounty Tools☆34Updated 4 years ago
- Lab that will help you to understand how type juggling vulnerability works.☆22Updated 4 years ago
- ☆32Updated 5 years ago
- ☆17Updated last year
- web-based-fuzzer☆32Updated 4 years ago
- ☆24Updated 4 years ago
- Burp extension to generate multi-step CSRF POC.☆30Updated 5 years ago
- Extract SSL certificate data (Subject Name, Subject Alt Names, Organisation)☆42Updated 3 months ago
- Utility to pull disclosed vulnerabilities from HackerOne private programs - for personal use only☆13Updated 3 years ago
- Extract subdomains from rapiddns.io☆23Updated 2 years ago
- A tools for JavaScript Recon☆21Updated 4 years ago
- ☆13Updated 4 years ago
- A Burp Suite extension to parse Content-Transfer-Encoding: quoted-printable emails received in Burpcollaborator's SMTP☆30Updated 4 years ago
- Push notifications to Slack channel or to custom server based on BurpSuite response conditions.☆17Updated 4 years ago
- a tool that compiles a csv of all h1 program stats☆47Updated last year
- Tool to try multiple paths for PHPunit RCE CVE-2017-9841☆26Updated 3 years ago
- Subvenkon is a subdomain enumerator from Venkon☆23Updated 4 years ago
- CVE, reports, research☆17Updated 4 years ago
- 10 Reset Password Flaws Based on Web Application Security☆11Updated 4 years ago
- CVE PoCs☆21Updated 4 years ago
- Image Tragick Exploit Tool Using Burp Collaborator☆36Updated 11 months ago
- Security test tool for Blind XSS☆26Updated 5 years ago
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that improve an active and passive scanner by yourself. This …☆60Updated 3 years ago
- Wordlists for Bug Bounty☆25Updated 5 years ago
- ☆46Updated 4 years ago
- Tool to extract & validate google fcm server keys from apks☆28Updated 4 years ago
- ☆33Updated 3 years ago
- Endpoint monitor tool☆20Updated 4 years ago
- Burp extension that performs a passive scan to identify cloud buckets and then test them for publicly accessible vulnerabilities☆44Updated 2 years ago
- A very vulnerable implementation of a GraphQL API.☆59Updated 3 years ago