htrgouvea / zarn
A lightweight static security analysis tool for modern Perl Apps
☆48Updated this week
Alternatives and similar repositories for zarn:
Users that are interested in zarn are comparing it to the libraries listed below
- Differential Fuzzer to hunt for logic bugs on Perl Modules☆25Updated 5 months ago
- HTTP fuzzer engine security oriented☆57Updated last week
- Simple PoC for demonstrating Race Conditions on Websockets☆56Updated last year
- Simple and pratical security gate for Github Security Alerts☆17Updated last month
- A curated list of argument injection vectors☆40Updated 3 weeks ago
- [W.I.P] An ecosystem of crawlers for detecting: leaks, sensitive data exposure and attempts exfiltration of data☆29Updated last month
- ☆50Updated 3 years ago
- Proof-of-concept code for research into GitHub Actions Cache poisoning.☆22Updated 2 months ago
- Create tar/zip archives that try to exploit zipslip vulnerability.☆47Updated 5 months ago
- ☆32Updated 2 years ago
- ☆12Updated last year
- A collection of utilities for building extensions using Burp's Montoya API☆47Updated 8 months ago
- A command-line application to generate random user agent strings.☆17Updated 4 years ago
- 🔗 A curated list of awesome Caido related projects☆35Updated 4 months ago
- A fast port scanner written in go with a focus on reliability and simplicity.☆16Updated 4 months ago
- assembly language examples, mostly Linux☆44Updated 4 years ago
- A Burp Extension to test applications for vulnerability to the Web Cache Deception attack☆15Updated 7 years ago
- Userland exec PoC to be used as attack vector technique☆68Updated 3 weeks ago
- Unsafe Unpacking Vulnerability: Lab Code, Semgrep Rules and Secure Implementation Guide☆37Updated 2 months ago
- masscan with exclusive excludes☆55Updated last year
- ☆31Updated 2 years ago
- Automated privilege escalation of the world's most popular Docker images.☆65Updated last year
- GTFOArgs is a curated list of programs and their associated arguments that can be exploited to gain privileged access or execute arbitrar…☆123Updated 3 months ago
- Quickly find all identities someone has used on their Github commits☆15Updated 6 months ago
- Statically built netcat binaries for Linux (other OSes can be added later)☆35Updated 7 years ago
- ☆14Updated 3 years ago
- Documentation of Semgrep: a fast, open-source, static analysis tool.☆39Updated this week
- Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3☆13Updated 2 years ago
- A python script to create a fake GitHub runner and hijack pipeline jobs to leak CI/CD secrets.☆21Updated 4 months ago