oshp / oshp-validatorLinks
Venom tests suite to validate an HTTP security response headers configuration against OSHP recommendation.
☆138Updated 2 weeks ago
Alternatives and similar repositories for oshp-validator
Users that are interested in oshp-validator are comparing it to the libraries listed below
Sorting:
- The OWASP Secure Headers Project☆184Updated this week
- A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Sec…☆319Updated 5 months ago
- A Broken Application - Very Vulnerable!☆181Updated this week
- Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files☆229Updated 2 weeks ago
- Runs a scan using Dastardly by Burp Suite against a target site and creates a JUnit XML report for the scan on completion.☆294Updated last year
- ☆124Updated 2 years ago
- Docker toolbox for pentest of web based application.☆176Updated this week
- ☆84Updated 2 years ago
- Security Auditor Utility for GraphQL APIs☆598Updated 2 months ago
- Secret Magpie - Secret Detection Tool☆246Updated last year
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆132Updated 3 years ago
- Host and manage multiple Juice Shop instances for security trainings and Capture The Flags☆308Updated this week
- SessionProbe is a multi-threaded tool designed for penetration testing and bug bounty hunting. It evaluates user privileges in web applic…☆465Updated last year
- Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently …☆314Updated 2 weeks ago
- 🧮 An online calculator to assess the risk of web vulnerabilities based on OWASP Risk Assessment☆163Updated 4 years ago
- The Internets #1 Subdomain Takeover Tool☆297Updated 8 months ago
- OWASP Raider: a novel framework for manipulating the HTTP processes of persistent sessions☆102Updated 2 years ago
- boostsecurityio/lotp☆138Updated 2 weeks ago
- truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)☆122Updated 2 years ago
- A tool to scrape the AWS ranges looking for a keyword in SSL certificate data.☆239Updated 2 years ago
- An open-source collection of API key rotation tutorials.☆76Updated 5 months ago
- CLI component of OWASP PurpleTeam☆134Updated 2 years ago
- A suite of secret scanners built in Rust for performance. Based on TruffleHog (https://github.com/dxa4481/truffleHog) which is written in…☆541Updated 7 months ago
- Find secrets in your codebase☆125Updated 11 months ago
- Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration☆304Updated 2 weeks ago
- Tools to assess DNS security.☆153Updated last year
- Eliminate dangling elastic IPs by performing analysis on your resources within all your AWS accounts.☆278Updated last year
- drHEADer helps with the audit of security headers received in response to a single request or a list of requests.☆112Updated last year
- OWASP Project Developer Guide - Document and Project Web pages☆115Updated last week
- OWASP Code Review Guide Web Repository☆148Updated 3 years ago