kongbytes / joi-security
Detect security flaws in Joi validation schemas (XSS, SQL injection, ...) 🔥
☆44Updated 10 months ago
Alternatives and similar repositories for joi-security:
Users that are interested in joi-security are comparing it to the libraries listed below
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 3 years ago
- Visualize your project security vulnerabilities as a pie chart in the terminal☆25Updated 2 years ago
- A simple Node.js Express REST app with some OWASP vulnerabilities.☆20Updated 8 months ago
- NearForm OWASP Top Ten Security Vulnerabilities Workshop☆42Updated this week
- Inject JS to the DOM to find vulnerable JavaScript libraries☆10Updated 7 months ago
- All checklists☆26Updated 6 years ago
- Fast and passive subdomain enumeration.☆17Updated 3 years ago
- A CommonJS library for working with Common Vulnerability Scoring System vectors and scores.☆12Updated 2 years ago
- It is a note about security on nodejs☆48Updated 6 years ago
- Find security vulnerabilities in open source npm packages while you code☆205Updated 3 years ago
- A very vulnerable implementation of a GraphQL API.☆59Updated 3 years ago
- Mitigate security concerns of Dependency Confusion supply chain security risks☆46Updated 2 years ago
- Burp Suite extension to log GraphQL operations as a comment☆23Updated 3 years ago
- Some VSCode snippet about Fastify☆10Updated 3 weeks ago
- ☆39Updated 2 years ago
- This is vulnerable microservice written in many language to demonstrating OWASP API Top Security Risk (under development)☆43Updated 2 years ago
- A Collection of articles, videos, blogs, talks and other materials on Node.js Security☆27Updated 5 years ago
- Collection of useful command line commands☆14Updated 3 years ago
- Bruteforce a JWT against a list of passwords☆74Updated 7 years ago
- Dependency Combobulator☆93Updated last year
- Fullstack moleculer Proof-of-Concept project. Moleculer in browser and on server.☆24Updated 4 years ago
- Prototype Pollution in JavaScript☆75Updated 2 years ago
- Android Pentest Setup Environment☆30Updated 2 years ago
- Deploy multiple instances of Nessus in docker containers easily☆20Updated 4 years ago
- Let's check if your target is vulnerable for client side prototype pollution.☆65Updated last year
- Go script to guess an API key / OAuth token found during pentest. CLI version of https://github.com/daffainfo/apiguesser-web/☆44Updated 2 years ago
- URL / IP / Email defanging with Javascript. Make IoC harmless.☆29Updated 5 months ago
- Security checks for your researches☆33Updated 4 years ago
- Programmatically fetch security vulnerabilities with one or many strategies (NPM Audit, Sonatype, Snyk, Node.js DB).☆30Updated 2 weeks ago
- Fast and multi-purpose DNS toolkit allow to run multiple DNS queries.☆9Updated 3 years ago