oshp / oshp-validatorLinks
Venom tests suite to validate an HTTP security response headers configuration against OSHP recommendation.
☆131Updated last month
Alternatives and similar repositories for oshp-validator
Users that are interested in oshp-validator are comparing it to the libraries listed below
Sorting:
- A Broken Application - Very Vulnerable!☆172Updated last week
- The OWASP Secure Headers Project☆169Updated last week
- A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Sec…☆301Updated last month
- ☆124Updated last year
- Docker toolbox for pentest of web based application.☆166Updated this week
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆128Updated 2 years ago
- ☆83Updated 2 years ago
- drHEADer helps with the audit of security headers received in response to a single request or a list of requests.☆110Updated 8 months ago
- Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files☆226Updated 3 months ago
- Secret Magpie - Secret Detection Tool☆240Updated last year
- Security Auditor Utility for GraphQL APIs☆496Updated 7 months ago
- A suite of secret scanners built in Rust for performance. Based on TruffleHog (https://github.com/dxa4481/truffleHog) which is written in…☆527Updated 2 months ago
- A collection of awesome AWS S3 tools that collects and enumerates exposed S3 buckets☆384Updated last year
- Host and manage multiple Juice Shop instances for security trainings and Capture The Flags☆292Updated this week
- Find secrets in your codebase☆124Updated 6 months ago
- Check any website (or set of websites) for insecure security headers.☆252Updated 2 years ago
- 🧮 An online calculator to assess the risk of web vulnerabilities based on OWASP Risk Assessment☆161Updated 4 years ago
- SessionProbe is a multi-threaded tool designed for penetration testing and bug bounty hunting. It evaluates user privileges in web applic…☆460Updated last year
- Eliminate dangling elastic IPs by performing analysis on your resources within all your AWS accounts.☆278Updated last year
- Fast and stealthy Amazon S3 bucket enumeration tool for pentesters.☆254Updated last month
- Runs a scan using Dastardly by Burp Suite against a target site and creates a JUnit XML report for the scan on completion.☆286Updated last year
- CLI component of OWASP PurpleTeam☆131Updated last year
- An open source intelligence tool to crawl the graph of certificate Alternate Names☆357Updated 3 weeks ago
- Blazing fast GraphQL discovery & fingerprinting toolbox.☆116Updated last year
- Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently …☆299Updated last month
- A humble, and 𝗳𝗮𝘀𝘁, security-oriented HTTP headers analyzer.☆330Updated last week
- OWASP Project Developer Guide - Document and Project Web pages☆114Updated 3 weeks ago
- ☆191Updated 2 years ago
- Websec interview questions by tib3rius answered☆311Updated last year
- OWASP Code Review Guide Web Repository☆141Updated 3 years ago