iixlabs / websec-training
A collection of vulnerable web applications in Node.js to practice security fundamentals
☆13Updated 8 years ago
Alternatives and similar repositories for websec-training:
Users that are interested in websec-training are comparing it to the libraries listed below
- Cross Distribution Exploit Testing☆27Updated 9 years ago
- REST/JSON interface to Burp Suite☆33Updated 4 years ago
- Local privilege escalation scripts and tools☆16Updated 8 years ago
- Faraday Workspaces for Bug Bounties☆20Updated 9 years ago
- A security write-up about the Paypal API & data leakage☆24Updated 8 years ago
- MoneyX is an intentionally vulnerable JSP application used for training developers in application security concepts.☆31Updated 8 years ago
- Advanced HTTP fingerprinting PoC☆44Updated 7 years ago
- Flash crossdomain policy security checker☆25Updated 9 years ago
- Python Implementation of a .NET Padding Oracle Assessment Tool☆30Updated 9 years ago
- A tiny chrome extension to record and replay your web application proof-of-concepts.☆20Updated 8 years ago
- Working Rsh Client With Bind/Reverse Shell☆20Updated 9 years ago
- A Burp Suite extension that starts scanning on requests it sees, and dumps results on standard output☆21Updated 8 years ago
- packetstormsecurity.net exploit archive 133ch3r☆23Updated 14 years ago
- Customizable lazy exploit pattern utility.☆13Updated 2 years ago
- Network Scanner for OpenSSL Memory Leak (CVE-2014-0160)☆11Updated 9 years ago
- A tool to extract database data from a blind SQL injection vulnerability.☆31Updated 9 years ago
- ☆50Updated 7 years ago
- ☆27Updated 7 years ago
- PFI (Port Forwarding Interceptor)☆46Updated 15 years ago
- sniff/log database traffic or actively execute arbitrary queries via TCP injection☆43Updated 8 years ago
- An automated Python + Ruby based XXE Exploiter (GUI + CLI)☆20Updated 8 years ago
- CSV injection Vulnerable Script.☆29Updated 7 years ago
- [DEPRECATED] Hiccup is a framework that allows the Burp Suite (a web application security testing tool, http://portswigger.net/burp/) to …☆42Updated 6 years ago
- Simple python script to detect meterpreter running in memory (hopefully)☆9Updated 10 years ago
- A Jenkins Pentest/Security Toolkit written in Python☆15Updated 7 years ago
- Framework for Automated Security Testing that is Scaleable and Asynchronous built on Microservices☆18Updated 8 years ago
- Python SDK to access the vulnerability database☆22Updated 5 years ago
- Burp and ZAP plugin that display image metadata (JPEG Exif or PNG text chunk).☆14Updated last year
- Tools for MITMing Yahoo! Mail with a Wifi Pineapple Mark V and Flash☆28Updated 8 years ago
- A Burp Suite extension that checks if a particular URL responds differently to various User-Agent headers☆15Updated 10 years ago