imperva / automatic-api-attack-toolLinks
Imperva's customizable API attack tool takes an API specification as an input, generates and runs attacks that are based on it as an output.
☆485Updated 2 years ago
Alternatives and similar repositories for automatic-api-attack-tool
Users that are interested in automatic-api-attack-tool are comparing it to the libraries listed below
Sorting:
- Repo for all the SKF Docker lab examples☆457Updated last year
- DOM XSS scanner for Single Page Applications☆414Updated 2 weeks ago
- Fuzzapi is a tool used for REST API pentesting and uses API_Fuzzer gem☆662Updated 4 years ago
- Web Application Security Automation Framework which recons the target for various assets to maximize the attack surface for security prof…☆415Updated 4 years ago
- Finds unknown classes of injection vulnerabilities☆705Updated 5 months ago
- HTTP file upload scanner for Burp Proxy☆414Updated 2 years ago
- Security Testing Scripts for JWT☆319Updated 3 years ago
- This repository contains all the XSS cheatsheet data to allow contributions from the community.☆442Updated last month
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆267Updated 2 years ago
- API Fuzzer which allows to fuzz request attributes using common pentesting techniques and lists vulnerabilities☆402Updated 8 years ago
- This Lab contain the sample codes which are vulnerable to Server-Side Request Forgery attack☆739Updated 2 years ago
- This repository contains all the supplement material for the book "The art of sub-domain enumeration"☆655Updated 6 years ago
- Web App bug hunting☆571Updated 7 months ago
- A simple SSRF-testing sheriff written in Go☆332Updated 11 months ago
- Sublert is a security and reconnaissance tool which leverages certificate transparency to automatically monitor new subdomains deployed b…☆1,011Updated 4 years ago
- REST/JSON API to the Burp Suite security tool.☆561Updated 2 months ago
- Subdomain Takeover Scanner | Subdomain Takeover Tool | by 0x94☆364Updated 2 years ago
- ☆1,144Updated last week
- An automated target reconnaissance pipeline.☆438Updated 2 years ago
- vulnerable OAuth 2.0 applications: understand the security implications of your OAuth 2.0 decisions.☆324Updated last year
- A Burp Suite extension to help pentesters to bypass WAFs or test their effectiveness using a number of techniques☆732Updated 6 years ago
- Tool to help exploit XXE vulnerabilities☆567Updated 2 years ago
- NoSql Injection CLI tool, for finding vulnerable websites using MongoDB.☆393Updated 3 years ago
- An automated approach to performing recon for bug bounty hunting and penetration testing.☆452Updated 5 years ago
- Extension for Burp Suite which uses AWS API Gateway to rotate your IP on every request.☆873Updated 7 months ago
- Python tool to find potential Server Side Reqest Forgery (SSRF) vulnerability parameters.☆333Updated 2 months ago
- bXSS is a utility which can be used by bug hunters and organizations to identify Blind Cross-Site Scripting.☆548Updated 2 years ago
- Bugbounty scope tool☆330Updated 7 months ago
- ChopChop is a CLI to help developers scanning endpoints and identifying exposition of sensitive services/files/folders.☆714Updated 2 years ago
- Tool for catching and logging different types of requests.☆220Updated 4 years ago