jorritfolmer / vulnerable-apiLinks
Enhanced fork with logging, OpenAPI 3.0 and Python 3 for security monitoring workshops
☆42Updated last year
Alternatives and similar repositories for vulnerable-api
Users that are interested in vulnerable-api are comparing it to the libraries listed below
Sorting:
- Vulnerable SAML infrastructure training applicaiton☆53Updated 2 years ago
- Detectify Crowdsource Challenge☆69Updated 3 years ago
- BurpSuite using the document and some extensions☆69Updated 5 years ago
- Sometimes we want to fuzz a set of sub-domain URLs with a common wordlist. Fuzzing them one by one is a tedious task, not to mention the …☆51Updated 4 years ago
- A very vulnerable implementation of a GraphQL API.☆61Updated 3 years ago
- ☆71Updated 4 years ago
- A Burp Suite Extension for parsing Project Files from the CLI.☆87Updated 9 months ago
- Find subdomains and takeovers.☆85Updated 2 years ago
- Custom scripts for the PIPER Burp extensions.☆98Updated last year
- ☆60Updated last year
- This repository contains an example Python API that is vulnerable to several different web API attacks.☆70Updated last year
- part of my wordlist to bruteforce DNS to find subdoamains.☆61Updated 3 years ago
- A collection of code for interacting with API sources directly to improve your understanding of those services.☆65Updated 4 years ago
- ☆76Updated 4 years ago
- A burpsuite extension that helps security researchers find public security reports published on h1 based on the selected host☆42Updated 5 years ago
- GraphQL security workshop labs☆112Updated this week
- Clientside vulnerability / reflected xss fuzzer☆150Updated last year
- Takeover subdomains using AWS dangling elastic ips and have a working POC for Subdomain Takeover.☆92Updated this week
- s3 brute force tool☆44Updated 4 years ago
- Misc bounty and vulndisc things☆85Updated 4 years ago
- Recon Custom WordList Ganerator☆58Updated 5 years ago
- A list of threat sinks used in the manual security source code review for application security☆72Updated 2 years ago
- Small tool to automate SSRF wordpress and XMLRPC finder☆81Updated 2 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆75Updated 2 years ago
- AWS S3 open bucket poc automated script.☆57Updated 3 years ago
- Bash script to automate Bug Bounty Reconnaissance☆38Updated 4 years ago
- Searching for virtual hosts among non-resolvable domains☆88Updated 5 years ago
- Lab that will help you to understand how type juggling vulnerability works.☆22Updated 4 years ago
- ☆44Updated 3 years ago
- A blazing fast & feature rich Amazon S3 bucket enumerator.☆98Updated 2 years ago