firefart / hijagger
Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration
☆289Updated last week
Alternatives and similar repositories for hijagger:
Users that are interested in hijagger are comparing it to the libraries listed below
- Private key usage verification☆418Updated last month
- Find authentication (authn) and authorization (authz) security bugs in web application routes.☆254Updated 6 months ago
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆186Updated last month
- Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files☆214Updated 3 weeks ago
- Tools to assess DNS security.☆151Updated 10 months ago
- Script to audit GitHub Action Workflow files for potential vulnerabilities.☆153Updated 4 months ago
- boostsecurityio/lotp☆110Updated last month
- Create notes during a security code review in VSCode 📝 Import your favorite SAST tool findings 🛠️ and collaborate with others 🤝☆132Updated last year
- High speed/Low cost CommonCrawl RegExp in Node.js☆245Updated 9 months ago
- Eliminate dangling elastic IPs by performing analysis on your resources within all your AWS accounts.☆267Updated 3 months ago
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆138Updated 3 years ago
- GitHub Actions Pipeline Enumeration and Attack Tool☆579Updated 5 months ago
- Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently …☆266Updated last month
- Octoscan is a static vulnerability scanner for GitHub action workflows.☆186Updated last week
- ☆373Updated 3 years ago
- ☆294Updated 5 months ago
- How GitHub Actions workflows can be hacked☆116Updated 4 months ago
- Search for vulnerabilities and exposures while filtering based on age, keywords, and other parameters.☆123Updated 2 years ago
- Distribute ordinary bash commands over many systems☆161Updated 2 years ago
- ☆110Updated last year
- openrisk is a tool that generates a risk score based on the results of a Nuclei scan.☆167Updated 8 months ago
- A checklist of practices for organizations dealing with account takeover (ATO)☆264Updated 3 months ago
- CQ, a code security scanner☆98Updated 8 months ago
- truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)☆113Updated last year
- 🔑 Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials.☆399Updated 2 months ago
- Security Auditor Utility for GraphQL APIs☆404Updated this week
- GTFOArgs is a curated list of programs and their associated arguments that can be exploited to gain privileged access or execute arbitrar…☆122Updated 2 months ago
- Corsair_scan is a security tool to test Cross-Origin Resource Sharing (CORS).☆123Updated last year
- Find CVE PoCs on GitHub☆141Updated last year