ostif-org / OSTIF
Security Work and Manual Reviews facilitated by Open Source Technology Improvement Fund, aka OSTIF
☆31Updated this week
Alternatives and similar repositories for OSTIF:
Users that are interested in OSTIF are comparing it to the libraries listed below
- InfoSec OpenAI Examples☆19Updated last year
- Service that scans your Infrastructure as Code for common vulnerabilities☆48Updated last year
- Melee: Tool to Detect Infections in MySQL Instances☆22Updated last year
- aws cli pentesting/red team snippets☆32Updated last year
- Manage attack surface data on Elasticsearch☆22Updated last year
- A command-line utility for auditing DNS configuration using Zonemaster API☆30Updated last year
- 📚A curated list of product security resources.☆19Updated 2 years ago
- MyOpenVDP is a free web application to install a vulnerability disclosure policy or a vulnerability disclosure program on your assets. (V…☆27Updated 7 months ago
- FastCVE - fast, rich and API-based search for CVE and more (CPE, CWE, CAPEC)☆46Updated last month
- A basic Python program to check Cybersecurity & Infrastructure Security Agency (CISA) Known Exploited Vulnerabilities (KEV) Catalog☆18Updated last year
- Active DIrectory Lab for Pentesting Practice☆24Updated 2 years ago
- A not-curated list of cloud hacking labs☆23Updated 10 months ago
- A web security research tool for DOM testing☆19Updated last week
- An Automated Mass Network Vulnerability Scanner and Recon Tool☆31Updated last year
- ☆19Updated last year
- Citrix Scanner for CVE-2023-3519☆50Updated last year
- A multi-cloud DNS record scanner that aims to help cybersecurity/IT analysts identify dangling CNAME records in their cloud DNS services …☆49Updated last year
- This GitHub Action sends a reverse shell from a runner via Azure Storage Account blobs☆36Updated 5 months ago
- This repository contains a graphical representation (Mind maps) of specific topics, so one can utilize it as a handbook for that specific…☆17Updated 3 years ago
- A comprehensive knowledge base for security professionals to keep track of and build defenses against API attack techniques.☆42Updated 5 months ago
- Paramalyzer - Burp extension for parameter analysis of large-scale web application penetration tests.☆32Updated 2 years ago
- Monitor your target continuously for new subdomains!☆26Updated last year
- ☆55Updated last year
- ☆32Updated 7 months ago
- Dependency Combobulator☆92Updated last year
- moniorg is a tool that leverages crt.sh website to monitor domains of a target☆47Updated last year
- Jumpstart multiple WebSocket servers quickly☆31Updated 3 years ago
- AWS Security Tool☆29Updated last year
- Efficient DevSecOps☆47Updated 3 months ago
- Determine privileges from cloud credentials via brute-force testing.☆66Updated 6 months ago