mrnfrancesco / GreedyForSQLi
Ricerca che mostra come scrivere regole per SemGrep per cercare SQL Injection nei plugin di Wordpress che usano action AJAX
☆16Updated last year
Alternatives and similar repositories for GreedyForSQLi
Users that are interested in GreedyForSQLi are comparing it to the libraries listed below
Sorting:
- A collection of my Semgrep rules☆49Updated last year
- Performing automated scan using Burp Suite Pro & Vmware Burp Rest API☆49Updated 2 years ago
- Mapping from bug bounty and vulnerability disclosure programs to respective GitHub organizations☆59Updated last week
- Make better use of the embedded browser that comes by default with Burp☆43Updated last year
- NotSoCereal: A Deserialization exploit playground☆52Updated 3 years ago
- Dependency Confusion Security Testing Tool☆47Updated 2 years ago
- A collection of Semgrep rules which followed security guidelines for .NET and Java.☆22Updated 3 years ago
- ☆94Updated 3 years ago
- An extension to use Semgrep inside Burp Suite.☆88Updated last year
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆32Updated 2 months ago
- Enhanced fork with logging, OpenAPI 3.0 and Python 3 for security monitoring workshops☆42Updated last year
- MetaSec.js combines all the free open-source security tools to identify issues with JavaScript and automates the boring parts☆80Updated 2 years ago
- yataf extracts secrets and paths from files or urls - its best used against javascript files☆52Updated 8 months ago
- Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications☆30Updated 2 years ago
- ☆64Updated 2 weeks ago
- Security Advisories☆32Updated last month
- ☆62Updated 2 years ago
- Let's check if your target is vulnerable for client side prototype pollution.☆65Updated last year
- List all public repositories for (valid) GitHub usernames☆73Updated last year
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆79Updated last year
- ☆192Updated 6 months ago
- swagroutes is a command-line tool that extracts and lists API routes from Swagger files in YAML or JSON format.☆58Updated 2 years ago
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆63Updated last year
- ☆166Updated 3 years ago
- A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter sp…☆20Updated 3 months ago
- CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).☆117Updated last month
- Prototype of Full Agentic Application Security Testing, FAAST = SAST + DAST + LLM agents☆43Updated 2 weeks ago
- A Burp Suite Extension for parsing Project Files from the CLI.☆87Updated 7 months ago
- QRFuzz, a fuzzing toolkit to test malicious QR Codes in mobile applications☆45Updated last year
- Create your own recon & vulnerability scanner with Trickest and GitHub☆49Updated last year