firefart / hijagger
Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration
☆293Updated last week
Alternatives and similar repositories for hijagger:
Users that are interested in hijagger are comparing it to the libraries listed below
- Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files☆216Updated 2 weeks ago
- Find authentication (authn) and authorization (authz) security bugs in web application routes.☆258Updated 2 weeks ago
- truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)☆115Updated last year
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆138Updated 3 years ago
- boostsecurityio/lotp☆119Updated 2 weeks ago
- GitHub Attack Toolkit - Extreme Edition - A static analysis and exploit toolkit for GitHub Actions.☆262Updated last week
- Eliminate dangling elastic IPs by performing analysis on your resources within all your AWS accounts.☆269Updated 6 months ago
- ☆110Updated last year
- Create notes during a security code review in VSCode 📝 Import your favorite SAST tool findings 🛠️ and collaborate with others 🤝☆132Updated this week
- Script to audit GitHub Action Workflow files for potential vulnerabilities.☆153Updated 7 months ago
- Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently …☆273Updated last month
- How GitHub Actions workflows can be hacked☆148Updated 7 months ago
- GitHub Actions Pipeline Enumeration and Attack Tool☆608Updated last week
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆186Updated 3 months ago
- ☆290Updated 7 months ago
- Private key usage verification☆432Updated 3 months ago
- openrisk is a tool that generates a risk score based on the results of a Nuclei scan.☆166Updated last month
- Distribute ordinary bash commands over many systems☆162Updated 2 years ago
- HASH (HTTP Agnostic Software Honeypot)☆137Updated 11 months ago
- Proof of concept code for Datadog Security Labs referenced exploits.☆430Updated last week
- Open a DNS server that knows no records but records every request. Used for DNS exfiltration.☆68Updated 3 years ago
- Find CVE PoCs on GitHub☆145Updated last year
- CQ, a code security scanner☆100Updated 10 months ago
- a smart DNS response-guided subdomain fuzzer☆150Updated 2 years ago
- ☆383Updated 3 years ago
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagrams☆103Updated 2 months ago
- Tools to assess DNS security.☆151Updated last year
- WebStor efficiently enumerates all websites across your organization’s networks and those in your DNS records - including cloud-hosted se…☆156Updated last year
- Kubernetes exploitation tool☆361Updated 8 months ago
- 🔑 Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials.☆415Updated 5 months ago