oshp / oshp-validator
Venom tests suite to validate an HTTP security response headers configuration against OSHP recommendation.
☆121Updated last month
Alternatives and similar repositories for oshp-validator
Users that are interested in oshp-validator are comparing it to the libraries listed below
Sorting:
- The OWASP Secure Headers Project☆157Updated last week
- Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive files☆218Updated last month
- ☆123Updated last year
- Tools to assess DNS security.☆152Updated last year
- A Broken Application - Very Vulnerable!☆159Updated last week
- openrisk is a tool that generates a risk score based on the results of a Nuclei scan.☆169Updated 3 months ago
- A tool to quickly do keyword searches over Gitlab and Github for OSINT & bug bounty recon☆237Updated last year
- OWASP Raider: a novel framework for manipulating the HTTP processes of persistent sessions☆104Updated last year
- A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Sec…☆290Updated last year
- The AWS Enumerator was created for service enumeration and info dumping for investigations of penetration testers during Black-Box testin…☆205Updated 3 years ago
- A tool to scrape the AWS ranges looking for a keyword in SSL certificate data.☆232Updated last year
- An open-source collection of API key rotation tutorials.☆71Updated last month
- GraphQL automated security testing toolkit☆316Updated last year
- A streamlined tool for discovering private TLDs for security research.☆198Updated this week
- boostsecurityio/lotp☆125Updated last month
- A project to visualize the software supply chain☆50Updated last year
- Check any website (or set of websites) for insecure security headers.☆250Updated last year
- truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)☆118Updated last year
- ☆110Updated last year
- ☆151Updated last year
- 🧮 An online calculator to assess the risk of web vulnerabilities based on OWASP Risk Assessment☆158Updated 3 years ago
- API Security Vulnerability Scanner designed to help you secure your APIs.☆137Updated this week
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆125Updated 2 years ago
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆188Updated 5 months ago
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆139Updated 3 years ago
- drHEADer helps with the audit of security headers received in response to a single request or a list of requests.☆110Updated 4 months ago
- Docker toolbox for pentest of web based application.☆151Updated this week
- Recon tool for cloud provider attribution. Supports AWS, Azure, Google, Cloudflare, and Digital Ocean.☆166Updated 6 months ago
- ☆182Updated last month
- Find secrets in your codebase☆123Updated 2 months ago