ostif-org / OSTIFLinks
Security Work and Manual Reviews facilitated by Open Source Technology Improvement Fund, aka OSTIF
☆34Updated 3 months ago
Alternatives and similar repositories for OSTIF
Users that are interested in OSTIF are comparing it to the libraries listed below
Sorting:
- Manage attack surface data on Elasticsearch☆23Updated last year
- Jumpstart multiple WebSocket servers quickly☆32Updated 3 years ago
- Service that scans your Infrastructure as Code for common vulnerabilities☆49Updated last year
- aws cli pentesting/red team snippets☆32Updated last year
- A Burp Suite extension for finding DNS vulnerabilities in web applications!☆94Updated 2 years ago
- A collection of one off hacks and simple scripts☆28Updated 2 years ago
- A multi-cloud DNS record scanner that aims to help cybersecurity/IT analysts identify dangling CNAME records in their cloud DNS services …☆50Updated 2 years ago
- A python3 script searching for secret on swaggerhub☆66Updated 3 years ago
- Paramalyzer - Burp extension for parameter analysis of large-scale web application penetration tests.☆33Updated 3 years ago
- A vulnerable environment for exploring common GCP misconfigurations and vulnerabilities☆29Updated 7 months ago
- HazProne is a Cloud Pentesting Framework that emulates close to Real-World Scenarios by deploying Vulnerable-By-Demand AWS resources enab…☆40Updated 3 years ago
- InfoSec OpenAI Examples☆19Updated last year
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆39Updated 3 years ago
- Melee: Tool to Detect Infections in MySQL Instances☆22Updated 2 years ago
- CLI & library to search for default credentials among thousands of Products / Vendors☆68Updated 4 years ago
- Cake Fuzzer is a project that is meant to help automatically and continuously discover vulnerabilities in web applications created based …☆104Updated 3 months ago
- 📚A curated list of product security resources.☆21Updated 4 months ago
- MyOpenVDP is a free web application to install a vulnerability disclosure policy or a vulnerability disclosure program on your assets. (V…☆31Updated last year
- Penetration Testing & Red Team tools & scripts☆12Updated 2 years ago
- Script for importing Nmap results into a Neo4j Graph Database☆23Updated 6 months ago
- Dependency Combobulator☆93Updated last year
- moniorg is a tool that leverages crt.sh website to monitor domains of a target☆47Updated 2 years ago
- First iteration of ML based Feedback WAF☆59Updated last year
- Some of my rough notes for Docker threat detection☆48Updated 2 years ago
- FastCVE: A Dockerized CVE search tool with API and CLI support for security vulnerability queries.☆56Updated 5 months ago
- Citrix Scanner for CVE-2023-3519☆51Updated 2 years ago
- Check IP addresses against known cloud provider IP address ranges☆46Updated 2 years ago
- Cloud Exploit Framework☆114Updated 3 years ago
- Extracting OSINT Insights from 15TB of GitHub Event Logs☆68Updated 2 years ago
- Advanced test for proxy & waf☆13Updated last month