ivision-research / vulnerable-graphql-api
A very vulnerable implementation of a GraphQL API.
☆59Updated 3 years ago
Alternatives and similar repositories for vulnerable-graphql-api:
Users that are interested in vulnerable-graphql-api are comparing it to the libraries listed below
- Target practice for ffuf☆62Updated 3 years ago
- Enhanced fork with logging, OpenAPI 3.0 and Python 3 for security monitoring workshops☆42Updated last year
- Penetration Testing Checklist☆35Updated 4 years ago
- Slide Decks and Supporting Content of talks given for Bugcrowd☆17Updated 5 years ago
- part of my wordlist to bruteforce DNS to find subdoamains.☆62Updated 3 years ago
- AWS S3 open bucket poc automated script.☆57Updated 3 years ago
- Get all possible href | src | url from target url or domain☆41Updated 4 years ago
- ☆59Updated 8 months ago
- AWS Security Checks☆36Updated 7 years ago
- Takeover AWS ips and have a working POC for Subdomain Takeover.☆90Updated last week
- ☆51Updated last month
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆58Updated 3 years ago
- This repository is intended for sharing files/tools/tutorials..etc that related to eWPTXv1 from eLearnSecurity☆23Updated 4 years ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆29Updated last year
- Custom scripts for the PIPER Burp extensions.☆97Updated last year
- Performing automated scan using Burp Suite Pro & Vmware Burp Rest API☆49Updated 2 years ago
- Sometimes we want to fuzz a set of sub-domain URLs with a common wordlist. Fuzzing them one by one is a tedious task, not to mention the …☆51Updated 3 years ago
- ☆48Updated 4 years ago
- ☆22Updated 3 years ago
- It's an watcher for new scopes added to bounty-targets-data and send you alert to Slack.☆57Updated 3 years ago
- learning case to prepare OSWE☆37Updated 5 years ago
- ☆22Updated 2 years ago
- Contains all my research and content produced regarding the log4shell vulnerability☆31Updated 3 years ago
- Go fish for AWS EIPs☆46Updated 3 years ago
- Manual JavaScript Linting is a Bug☆49Updated 3 years ago
- commonspeak2 subdomains wordlist generated daily **DEPRECATED** The author(s) of commonspeak2 maintain an official repo with more lists. …☆40Updated 3 years ago
- Script to test open Akamai ARL vulnerability.☆71Updated 3 years ago
- ☆18Updated 3 years ago
- Lab that will help you to understand how type juggling vulnerability works.☆22Updated 4 years ago
- ☆21Updated 7 years ago