ivision-research / vulnerable-graphql-api
A very vulnerable implementation of a GraphQL API.
☆57Updated 2 years ago
Related projects ⓘ
Alternatives and complementary repositories for vulnerable-graphql-api
- Performing automated scan using Burp Suite Pro & Vmware Burp Rest API☆48Updated 2 years ago
- AWS Security Checks☆36Updated 6 years ago
- ☆22Updated 2 years ago
- ☆22Updated 3 years ago
- Enhanced fork with logging, OpenAPI 3.0 and Python 3 for security monitoring workshops☆42Updated 8 months ago
- Takeover AWS ips and have a working POC for Subdomain Takeover.☆88Updated 7 months ago
- Deploy a Private Burpsuite Collaborator using boto3 Python Library☆57Updated 4 years ago
- A command-line tool for Cross-Site WebSocket Hijacking☆39Updated last year
- Tool for making it easy to collect dns results from the CLI☆39Updated 2 months ago
- This repository is intended for sharing files/tools/tutorials..etc that related to eWPTXv1 from eLearnSecurity☆23Updated 4 years ago
- part of my wordlist to bruteforce DNS to find subdoamains.☆62Updated 3 years ago
- ☆21Updated 7 years ago
- ☆57Updated 4 months ago
- ☆47Updated 3 years ago
- Vulnerable SAML infrastructure training applicaiton☆48Updated last year
- This is vulnerable microservice written in many language to demonstrating OWASP API Top Security Risk (under development)☆41Updated last year
- Sometimes we want to fuzz a set of sub-domain URLs with a common wordlist. Fuzzing them one by one is a tedious task, not to mention the …☆51Updated 3 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆58Updated 3 years ago
- Lab that will help you to understand how type juggling vulnerability works.☆22Updated 4 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆74Updated 2 years ago
- Template used for my OSCP exam.☆26Updated 2 years ago
- ☆27Updated 5 years ago
- Manual JavaScript Linting is a Bug☆49Updated 3 years ago
- Script to test open Akamai ARL vulnerability.☆70Updated 3 years ago
- It's an watcher for new scopes added to bounty-targets-data and send you alert to Slack.☆55Updated 2 years ago
- ☆47Updated 5 months ago
- ☆90Updated 2 years ago
- ☆26Updated 4 years ago
- This script scrapes the list of open Bug Bounty Programs from openbugbounty.org☆26Updated 2 years ago