mikesamuel / attack-review-testbed
Make it easy to probe the strengths and weaknesses of a hardened Node.js stack
☆19Updated 5 years ago
Alternatives and similar repositories for attack-review-testbed:
Users that are interested in attack-review-testbed are comparing it to the libraries listed below
- Security design pattern support for Node.js☆24Updated 5 years ago
- Discussion area for security aspects of ECMAScript☆64Updated 7 years ago
- rules for scanjs functionality☆28Updated 3 years ago
- umbrella config to achieve scanjs-like functionality through eslint☆88Updated 3 years ago
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 3 years ago
- Security advisories for Node.js and the JavaScript ecosystem.☆41Updated 3 years ago
- Policy management tool for Node.js☆22Updated 2 years ago
- ESLint plugin with rules for finding security issues in React projects.☆18Updated 3 years ago
- ☆39Updated 2 years ago
- A zoo for malicious NPM packages☆20Updated 2 years ago
- JavaScript parser and sandbox☆78Updated 8 years ago
- Snyk Node Runtime Agent☆16Updated 2 years ago
- WebAppSec Content Security Policy☆217Updated this week
- Checks filenames to be committed against a library of filename rules to prevent sensitive files in Git☆66Updated last week
- A Modest Content Security Proposal☆40Updated 3 years ago
- Vulnerabilities discovered in npm packages [Berkeley PL & Security Research]☆44Updated 9 months ago
- A developer-friendly secrets detection tool for CI and pre-commit hooks based on Yelp's detect-secrets☆50Updated 2 years ago
- An npm beholder that deceives you☆31Updated 3 months ago
- TSLint security rules☆70Updated 4 years ago
- Problem statement and basic mitigations for ephemeral fingerprinting on the web.☆21Updated 4 years ago
- Intentionally Vulnerable Node Applications☆15Updated 5 years ago
- A documentation and tracking project with the goal of making package management systems more secure.☆50Updated 4 years ago
- Fast and simple way to check any HTTP Headers☆45Updated last year
- An SSRF-preventing wrapper around Node's request module☆26Updated 6 years ago
- "Will I break you" - a tool for testing dependents☆38Updated this week
- A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.☆56Updated 6 months ago
- A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC☆32Updated 2 months ago
- A DNS polling library that makes Node.js HTTP clients resilient to DNS errors☆15Updated 2 years ago
- Derive property based testing fast-check into a fuzzer for REST APIs☆39Updated 4 years ago
- Visualize your project security vulnerabilities as a pie chart in the terminal☆25Updated 2 years ago