h3xstream / find-sec-bugs
The FindBugs plugin for security audits of Java web applications and Android applications. (Also work with Scala and Groovy projects)
☆21Updated 11 months ago
Alternatives and similar repositories for find-sec-bugs:
Users that are interested in find-sec-bugs are comparing it to the libraries listed below
- Burp extension to quickly and easily develop Python complex exploits based on Burp proxy requests.☆33Updated 9 years ago
- Deliberately vulnerable web application☆22Updated 7 years ago
- Demo server for testing Java deserialization payloads☆15Updated 8 years ago
- Faraday Continuous Scanning☆33Updated 8 years ago
- A BurpSuite plugin to detect Same Origin Method Execution vulnerabilities☆60Updated 7 years ago
- PoC for Scala and Groovy☆14Updated 8 years ago
- [DEPRECATED] Hiccup is a framework that allows the Burp Suite (a web application security testing tool, http://portswigger.net/burp/) to …☆42Updated 6 years ago
- Python Implementation of a .NET Padding Oracle Assessment Tool☆30Updated 9 years ago
- XXE OOB Exploitation Toolset for Automation☆63Updated 11 years ago
- Demo Application and Exploit☆35Updated 7 years ago
- REST/JSON interface to Burp Suite☆33Updated 4 years ago
- Baseline IoT security checklist. Consider security as early in development as possible and reap the rewards.☆30Updated 7 years ago
- Simple socket-based gateway to the Burp Collaborator☆33Updated 8 years ago
- Tainted PhantomJS☆53Updated 9 years ago
- BurpSuite extension to assist with Automated Forced Browsing/Endpoint Enumeration☆22Updated 6 years ago
- Repository for the Deprecated MITRE Capture the Flag scoreboard.☆11Updated 7 years ago
- Peach Fuzzer Web Frontend☆52Updated 3 years ago
- Python Scanner for "ShellShock" (CVE-2014-6271)☆44Updated 10 years ago
- Burp and ZAP plugin that display image metadata (JPEG Exif or PNG text chunk).☆14Updated last year
- Server component of the mobile labs☆36Updated 13 years ago
- A BurpSuite plugin to detect Same Origin Method Execution vulnerabilities☆15Updated 8 years ago
- A better SSL cipher checker using gnutls☆28Updated 7 years ago
- A Burp Extender plugin, that will deserialized java objects and encode them in XML using the Xtream library.☆25Updated 9 years ago
- Cronbased Dirty Cow Exploit☆31Updated 8 years ago
- Study about HQL injection exploitation.☆50Updated 8 years ago
- Custom Fortify SCA rules to detect common JSSE certification validation flaws☆11Updated 9 years ago
- Customizable lazy exploit pattern utility.☆13Updated 2 years ago
- A collection of vulnerable web applications in Node.js to practice security fundamentals☆13Updated 8 years ago
- Python object interface to requests/responses recorded by Burp Suite☆36Updated 5 years ago
- Payload generator for Java Binary Deserialization attack with Commons FileUpload (CVE-2013-2186)☆39Updated 8 years ago