dmarushkin / OWASP-Appsec-DiscoveryLinks
OWASP Appsec Discovery tool and service for searching, parsing, and scoring severity using rules or AI for Swagger, Protobuf, GraphQL, DTOs, and other structured contract objects in code
☆34Updated 4 months ago
Alternatives and similar repositories for OWASP-Appsec-Discovery
Users that are interested in OWASP-Appsec-Discovery are comparing it to the libraries listed below
Sorting:
- FastCVE: A Dockerized CVE search tool with API and CLI support for security vulnerability queries.☆52Updated 3 weeks ago
- A steampipe plugin to query projectdiscovery.io tools.☆26Updated 11 months ago
- Jumpstart multiple WebSocket servers quickly☆31Updated 3 years ago
- List of fresh and validated DNS resolvers updated every 12h.☆22Updated this week
- Automated privilege escalation of the world's most popular Docker images.☆66Updated last year
- Research on abusing GitLab Runners☆26Updated 4 years ago
- FireProx written in Go☆20Updated last year
- A tool to parse, deduplicate, and query multiple port scans.☆59Updated last year
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a p…☆30Updated 5 months ago
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆39Updated 2 years ago
- Create tar/zip archives that try to exploit zipslip vulnerability.☆47Updated 9 months ago
- This is a proof-of-concept of malicious software running inside of ModSecurity WAF.☆33Updated 3 years ago
- Presentation materials for my Black Hat USA 2022 Briefing and Arsenal talks☆65Updated 2 years ago
- Backend for Nuclear Pond☆21Updated last year
- A blazing fast, high performance implementation of AutoRecon in Rust. A multi-threaded network reconnaissance tool which performs automa…☆42Updated 5 months ago
- Useful collection of scapy-scripts and more☆29Updated last year
- Simple CLI tool for the generation of downloader oneliners for UNIX-like or Windows systems☆42Updated 4 years ago
- ☆28Updated last year
- A bash script that automates the scanning of a target network for HTTP resources through XXE☆38Updated 4 years ago
- CRLFMap is a tool to find HTTP Splitting vulnerabilities☆25Updated 4 years ago
- Code and result files (models, etc.) related to Metadata Digger's parts using Artificial Intelligence methods.☆13Updated 5 years ago
- an Evil Java RMI Registry.☆50Updated 2 years ago
- Interactsh deployment to AWS EC2 Instance with Terraform☆12Updated 3 years ago
- Take domains on stdin and output them on stdout if they get resolved☆33Updated 3 years ago
- Collection of Semgrep rules for security analysis☆10Updated last year
- Additional active scan checks for BURP☆27Updated 8 months ago
- ☆57Updated 2 years ago
- ☆12Updated last year
- Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool☆25Updated 3 years ago
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated 10 months ago