oauth security guidelines
☆232Jun 25, 2019Updated 6 years ago
Alternatives and similar repositories for oauth-2.0-security-cheat-sheet
Users that are interested in oauth-2.0-security-cheat-sheet are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- vulnerable OAuth 2.0 applications: understand the security implications of your OAuth 2.0 decisions.☆329Mar 27, 2024Updated 2 years ago
- GraphQL automated security testing toolkit☆334Feb 20, 2024Updated 2 years ago
- A projectdiscovery driven attack surface monitoring bot powered by axiom☆188Aug 11, 2022Updated 3 years ago
- An Intentionally designed Vulnerable Android Application built in Kotlin.☆255Mar 2, 2022Updated 4 years ago
- An invoice management application built on the MEAN stack with intentional vulnerabilities used to demonstrate insecure configurations an…☆16Sep 4, 2020Updated 5 years ago
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆176Oct 26, 2024Updated last year
- 🔑 Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials.☆426Feb 20, 2026Updated last month
- Awesome secure by default libraries to help you eliminate bug classes!☆701Dec 6, 2025Updated 3 months ago
- Everything about xss protection technology☆14Oct 22, 2019Updated 6 years ago
- Custom scripts for the PIPER Burp extensions.☆97Sep 24, 2023Updated 2 years ago
- Recon tool for URLs discovery☆12Jun 19, 2024Updated last year
- A collection of simple tools and poc-builders☆39Mar 17, 2026Updated last week
- Recurrent Neural Network SubDomain Discovery Tool☆95Sep 20, 2022Updated 3 years ago
- Python script to launch burp scans automatically☆32Jul 18, 2021Updated 4 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click and start building anything your business needs.
- security.txt collection of most popular world-wide domains☆56Sep 25, 2023Updated 2 years ago
- Modular Kubernetes lab which provides an easy and streamlined way to deploy a test cluster with support for different components.☆53Oct 2, 2025Updated 5 months ago
- Proof of concept code for Datadog Security Labs referenced exploits.☆449Mar 9, 2026Updated 3 weeks ago
- Accompanying material needed for the workshop☆11Jun 14, 2023Updated 2 years ago
- A cheatsheet for exploiting server-side SVG processors.☆799Jul 2, 2020Updated 5 years ago
- 🦄🔒 Awesome list of secrets in environment variables 🖥️☆902Sep 21, 2022Updated 3 years ago
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆191Dec 3, 2024Updated last year
- Demo of the URLClassLoader JAR-swapping showing the ability to replace and exploit an already loaded JAR with inner classes☆32Dec 10, 2022Updated 3 years ago
- This repository contains a collection of cheatsheets I have put together for tools related to pentesting organizations that leverage clou…☆2,808Sep 17, 2024Updated last year
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- A curated list of awesome browser security learning material.☆151Nov 20, 2022Updated 3 years ago
- ☆24Jan 26, 2021Updated 5 years ago
- Websec interview questions by tib3rius answered☆308Nov 13, 2023Updated 2 years ago
- ☆229Dec 18, 2025Updated 3 months ago
- A very vulnerable implementation of a GraphQL API.☆61Nov 12, 2021Updated 4 years ago
- A simple script to check for insecurely exposed git repositories.☆12Mar 17, 2019Updated 7 years ago
- A custom built DNS bruteforcer with multi-threading, and handling of bad resolvers.☆56Apr 25, 2022Updated 3 years ago
- Scans Slack for API tokens, credentials, passwords, and more using YARA rules☆40Feb 26, 2021Updated 5 years ago
- Prototype Pollution and useful Script Gadgets☆1,604Jan 27, 2024Updated 2 years ago
- Wordpress hosting with auto-scaling on Cloudways • AdFully Managed hosting built for WordPress-powered businesses that need reliable, auto-scalable hosting. Cloudways SafeUpdates now available.
- ☆1,202Sep 2, 2022Updated 3 years ago
- A collection of Turbo Intruder scripts.☆71Feb 1, 2025Updated last year
- ☆437Jun 1, 2021Updated 4 years ago
- Filter and enrich a list of subdomains by level☆213Sep 25, 2023Updated 2 years ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆964Dec 31, 2021Updated 4 years ago
- ☆34Jun 23, 2021Updated 4 years ago
- Cloudlist is a tool for listing Assets from multiple Cloud Providers.☆1,014Mar 23, 2026Updated last week