mgm-sp / WAF-Payload-CollectionLinks
Payloads that can be used for testing web application firewalls
☆54Updated 3 years ago
Alternatives and similar repositories for WAF-Payload-Collection
Users that are interested in WAF-Payload-Collection are comparing it to the libraries listed below
Sorting:
- Zero-dollar attack surface management tool☆310Updated last year
- APIDetector: Efficiently scan for exposed Swagger endpoints across web domains and subdomains. Supports HTTP/HTTPS, multi-threading, and …☆356Updated 9 months ago
- Repository of AI-generated Nuclei templates for public CVEs not yet covered by existing templates, enhancing detection speed and coverage…☆112Updated 3 months ago
- Measures the effectiveness of your Web Application Firewall (WAF)☆82Updated 6 months ago
- ☆153Updated last week
- Find authentication (authn) and authorization (authz) security bugs in web application routes.☆280Updated 3 months ago
- A rapid HTTP downgrade smuggling scanner written in Go.☆310Updated last year
- ☆110Updated last year
- Damn Vulnerable SCA Application☆43Updated last week
- SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens☆164Updated last year
- openrisk is a tool that generates a risk score based on the results of a Nuclei scan.☆179Updated last week
- A Burp Suite Extension for Application Penetration Testing to map flows and vulnerabilities☆119Updated 2 years ago
- OWASP ASVS Security Evaluation Templates with Nuclei☆42Updated last month
- Vulnerable environments paired with ready-to-use Nuclei templates for security testing and learning! 🚀☆125Updated 5 months ago
- API Security Project aims to present unique attack & defense methods in API Security field☆289Updated 3 years ago
- Downloads Information from NIST (CVSS), first.org (EPSS), and CISA (Exploited Vulnerabilities) and combines them into one list. Reports f…☆142Updated 2 years ago
- Chat automates Nuclei template generation☆108Updated 2 years ago
- A lightweight GPT model, trained to discover subdomains.☆335Updated 2 weeks ago
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆192Updated last year
- Tools for finding SMTP smuggling vulnerabilities.☆143Updated last year
- Find CVE PoCs on GitHub☆156Updated 5 months ago
- Web dashboard for Interactsh client☆236Updated last week
- Nuclear Pond is a utility leveraging Nuclei to perform internet wide scans for the cost of a cup of coffee.☆186Updated 2 years ago
- A source code static analysis platform for AppSec enthusiasts.☆265Updated 3 weeks ago
- FlowMate, a BurpSuite extension that brings taint analysis to web applications, by tracking all parameters send to a target application a…☆164Updated 2 months ago
- Github action for monitoring CVE☆43Updated this week
- navgix is a multi-threaded golang tool that will check for nginx alias traversal vulnerabilities☆73Updated 2 years ago
- Black box fuzzer for web applications☆436Updated 5 months ago
- Cloud agnostic IAM permissions enumerator☆161Updated 8 months ago
- ☆329Updated 5 months ago