jorritfolmer / vulnerable-api
Enhanced fork with logging, OpenAPI 3.0 and Python 3 for security monitoring workshops
☆42Updated last year
Alternatives and similar repositories for vulnerable-api:
Users that are interested in vulnerable-api are comparing it to the libraries listed below
- Script to test open Akamai ARL vulnerability.☆70Updated 3 years ago
- Custom scripts for the PIPER Burp extensions.☆97Updated last year
- Takeover AWS ips and have a working POC for Subdomain Takeover.☆90Updated this week
- Sometimes we want to fuzz a set of sub-domain URLs with a common wordlist. Fuzzing them one by one is a tedious task, not to mention the …☆51Updated 3 years ago
- ☆59Updated 7 months ago
- Performing automated scan using Burp Suite Pro & Vmware Burp Rest API☆49Updated 2 years ago
- A Burp Suite extension for CSRF proof of concepts.☆49Updated last year
- Find subdomains and takeovers.☆84Updated 2 years ago
- ☆37Updated 3 weeks ago
- WILSON Cloud Respwnder is a Web Interaction Logger Sending Out Notifications with the ability to serve custom content in order to appropr…☆51Updated 5 months ago
- A list of Awesome Bughunting oneliners , collected from the various sources☆64Updated last year
- Running nuclei Continuously☆55Updated 2 years ago
- Feed it a list of subdomains, it will resolve them and tell you which ones are internal☆91Updated 3 years ago
- Recon Custom WordList Ganerator☆56Updated 4 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆130Updated 4 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆58Updated 3 years ago
- Misc bounty and vulndisc things☆83Updated 4 years ago
- ☆71Updated 4 years ago
- Target practice for ffuf☆61Updated 3 years ago
- A collection of over 5.1 million sub-domains and assets belonging to public bug bounty programs, compiled into a repo, for performing bul…☆98Updated 3 years ago
- a tool that compiles a csv of all h1 program stats☆46Updated last year
- AWS S3 open bucket poc automated script.☆56Updated 3 years ago
- part of my wordlist to bruteforce DNS to find subdoamains.☆62Updated 3 years ago
- ☆48Updated 4 years ago
- A Burp Suite Extension for parsing Project Files from the CLI.☆86Updated 4 months ago
- Small tool to automate SSRF wordpress and XMLRPC finder☆80Updated 2 years ago
- HTTP parameter discovery suite.☆61Updated 4 years ago
- Lab that will help you to understand how type juggling vulnerability works.☆22Updated 4 years ago
- ☆65Updated 2 years ago
- The commands and scripts I used in the Live Recon Village talks☆38Updated 3 years ago