n0psn0ps / FernbachAPI
Fernbach is a vulnerable API written in the Flask micro web framework. The intent of this API is for testing the OWASP top ten vulnerabilities in an API environment.
☆30Updated 2 years ago
Alternatives and similar repositories for FernbachAPI:
Users that are interested in FernbachAPI are comparing it to the libraries listed below
- Extract endpoints marked as disallow in robots files to generate wordlists.☆56Updated 2 years ago
- A tool for check available dependency packages across npmjs, PyPI or RubyGems registry.☆28Updated 2 years ago
- An SSRF detector tool written in golang. I have fixed some errors and added some more payloads to it. But the tool credits go to z0idsec.☆43Updated 3 years ago
- ☆22Updated 3 years ago
- Bugbounty utility to store list of enumerated subdomains into an sqlite3 db [one liner style / Pipe and save]☆28Updated 4 years ago
- gup aka Get All Urls parameters to create wordlists for brute forcing parameters.☆17Updated 3 years ago
- Telegram cli tool for bot notifications☆17Updated 3 years ago
- Simple tool to test for SSRF/OOB HTTP Read within the Path of a request☆30Updated 5 years ago
- Intentionally Vulnerable Nodejs Application & APIs☆22Updated 2 years ago
- ☆19Updated 3 years ago
- 10 Reset Password Flaws Based on Web Application Security☆11Updated 4 years ago
- ☆48Updated 4 years ago
- Blind spot is a python tool for blind injection vulnerabilities , SQLi time based , Command injection , code injection , SSTI☆27Updated 4 years ago
- Enhanced 403 bypass header☆21Updated 2 years ago
- Collection of content discovery wordlists in one wordlist.☆37Updated 3 years ago
- part of my wordlist to bruteforce DNS to find subdoamains.☆62Updated 3 years ago
- ☆21Updated 4 years ago
- ☆18Updated 4 years ago
- Official Android Pentesting Slide By RootBakar☆15Updated 3 years ago
- Created so I can collate all the usefull information and links I've found☆17Updated 3 years ago
- Tool to find stored robots.txt files from the past☆18Updated last year
- Credax - Fuzzing Tool with Slack Notifications. Also removes false positive responses.☆10Updated 3 years ago
- ☆10Updated 2 years ago
- CLI tool that extracts a regex pattern from a list of urls ( Rust )☆61Updated 2 years ago
- Cool HackerOne Reports☆19Updated 2 years ago
- 🖇 Enumerate git repository URL from list of URL / User / Org. Friendly to pipeline☆59Updated 2 months ago
- Burp Suite plugin to copy regex matches from selected requests and/or responses to the clipboard.☆33Updated 2 years ago
- Alternative to XSS Hunter for blind XSS.☆50Updated 2 years ago
- WebSocket Connection Smuggler☆44Updated 2 years ago
- Multithreaded Host Header Redirection Scanner☆13Updated 4 years ago