flipkart-incubator / Astra
Automated Security Testing For REST API's
☆2,530Updated 7 months ago
Alternatives and similar repositories for Astra:
Users that are interested in Astra are comparing it to the libraries listed below
- Offensive Web Testing Framework (OWTF), is a framework which tries to unite great tools and make pen testing more efficient http://owtf.o…☆1,832Updated last month
- ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.☆2,303Updated 3 months ago
- A curated list of amazingly awesome Burp Extensions☆3,040Updated 2 months ago
- File upload vulnerability scanner and exploitation tool.☆3,154Updated last year
- Detect and bypass web application firewalls and protection systems☆2,704Updated 5 months ago
- A python script that finds endpoints in JavaScript files☆3,789Updated 9 months ago
- Subdomain Takeover tool written in Go☆1,926Updated last year
- A Tool for Domain Flyovers☆5,694Updated 2 years ago
- gitGraber: monitor GitHub to search and find sensitive data in real time for different online services such as: Google, Amazon, Paypal, G…☆2,051Updated 5 months ago
- A high performance offensive security tool for reconnaissance and vulnerability scanning☆3,121Updated 7 months ago
- Open Source Vulnerability Management Platform☆5,153Updated this week
- A Workflow Engine for Offensive Security☆5,430Updated 7 months ago
- HTTP parameter discovery suite.☆5,376Updated last month
- A toolkit for testing, tweaking and cracking JSON Web Tokens☆5,546Updated 5 months ago
- Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.☆1,475Updated 10 months ago
- Scan for misconfigured S3 buckets across S3-compatible APIs!☆2,642Updated this week
- 🔥 Web-application firewalls (WAFs) from security standpoint.☆6,431Updated 2 months ago
- Automated NoSQL database enumeration and web application exploitation tool.☆2,980Updated 5 months ago
- "Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.☆4,964Updated last week
- ☆2,191Updated last year
- nodejsscan is a static security code scanner for Node.js applications.☆2,416Updated 2 weeks ago
- The fastest and complete solution for domain recognition. Supports screenshoting, port scan, HTTP check, data import from other tools, su…☆3,376Updated 11 months ago
- Fuzzapi is a tool used for REST API pentesting and uses API_Fuzzer gem☆643Updated 3 years ago
- Automatic SSRF fuzzer and exploitation tool☆3,051Updated 7 months ago
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆3,850Updated 8 months ago
- SSRF (Server Side Request Forgery) testing resources☆2,375Updated 3 months ago
- Notes about attacking Jenkins servers☆2,018Updated 6 months ago
- Knock Subdomain Scan☆3,915Updated 2 months ago
- The Swiss Army knife for automated Web Application Testing☆2,185Updated 8 months ago