mikesamuel / attack-review-testbedLinks
Make it easy to probe the strengths and weaknesses of a hardened Node.js stack
☆19Updated 6 years ago
Alternatives and similar repositories for attack-review-testbed
Users that are interested in attack-review-testbed are comparing it to the libraries listed below
Sorting:
- Security design pattern support for Node.js☆24Updated 6 years ago
- rules for scanjs functionality☆28Updated 4 years ago
- umbrella config to achieve scanjs-like functionality through eslint☆87Updated 4 years ago
- A zoo for malicious NPM packages☆20Updated 2 years ago
- TSLint security rules☆69Updated 5 years ago
- Security advisories for Node.js and the JavaScript ecosystem.☆40Updated 4 years ago
- Discussion area for security aspects of ECMAScript☆64Updated 7 years ago
- ESLint plugin with rules for finding security issues in React projects.☆19Updated 4 months ago
- Policy management tool for Node.js☆22Updated 2 years ago
- JavaScript parser and sandbox☆79Updated 9 years ago
- Some thoughts on how Node.js might respond to a changing security environment☆173Updated 6 years ago
- Fast and simple way to check any HTTP Headers☆46Updated 2 years ago
- WebAppSec Content Security Policy☆221Updated last week
- Detect vulnerable regexes in your project. REDOS, catastrophic backtracking.☆337Updated 3 years ago
- Snyk Node Runtime Agent☆16Updated 3 years ago
- TSLint rules for Angular☆18Updated 6 years ago
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 4 years ago
- Custom ESLint rule to disallows unsafe innerHTML, outerHTML, insertAdjacentHTML and alike☆236Updated 2 months ago
- Hands-on practical use of HTTP security headers as browser security controls to help secure web applications☆18Updated 2 years ago
- Vulnerabilities discovered in npm packages [Berkeley PL & Security Research]☆42Updated last year
- ☆39Updated 2 years ago
- ESLint plugin to detect and stop Trojan Source attacks☆78Updated last week
- A browser API to prevent DOM-Based Cross Site Scripting in modern web applications.☆637Updated 2 weeks ago
- Checks filenames to be committed against a library of filename rules to prevent sensitive files in Git☆67Updated last week
- A developer-friendly secrets detection tool for CI and pre-commit hooks based on Yelp's detect-secrets☆52Updated 3 years ago
- An SSRF-preventing wrapper around Node's request module☆26Updated 7 years ago
- "Will I break you" - a tool for testing dependents☆40Updated 2 weeks ago
- Visualizing the inner workings of HTTP/2☆21Updated 2 years ago
- Intentionally Vulnerable Node Applications☆16Updated 5 years ago
- OWASP Serverless Top 10☆218Updated 4 years ago