payatu / Tiredful-API
An intentionally designed broken web application based on REST API.
☆570Updated 3 years ago
Related projects: ⓘ
- A REST API security testing framework.☆324Updated 2 years ago
- A security tool for grabbing screenshots of many web hosts☆306Updated 7 years ago
- Python3 Burp History parsing tool to discover potential SQL injection points. To be used in tandem with SQLmap.☆464Updated 4 years ago
- Red team Arsenal - An intelligent scanner to detect security vulnerabilities in company's layer 7 assets.☆409Updated last year
- Vulners Python API wrapper☆356Updated 3 weeks ago
- Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Applica…☆480Updated 6 years ago
- A database of common, interesting or useful commands, in one handy referable form☆745Updated 7 months ago
- Fuzzapi is a tool used for REST API pentesting and uses API_Fuzzer gem☆630Updated 3 years ago
- ☆1,114Updated this week
- Security Mindmap that could be useful for the infosec community when doing pentest, bug bounty or red-team assessments.☆726Updated 2 years ago
- ☆316Updated this week
- Modern tactical exploitation toolkit.☆788Updated 2 months ago
- A simple CORS misconfiguration scanner☆399Updated 4 years ago
- Pentest Lab on OpenStack with Heat, Chef provisioning and Docker☆377Updated 6 years ago
- A collection of scripts that run on my web server. Mainly for debugging SSRF, blind XSS, and XXE vulnerabilities.☆528Updated 7 years ago
- Various Tools and Docker Images☆277Updated 6 years ago
- ☆317Updated 6 years ago
- A scripted pipeline of tools to streamline the bug bounty/penetration test reconnaissance phase, so you can focus on chomping bugs.☆393Updated 4 years ago
- A tool designed to assist with finding all sinks and sources of a web application and display these results in a digestible manner.☆552Updated last year
- Scripts that are useful for me on pen tests☆523Updated 2 years ago
- ☆376Updated this week
- This repository contains all the material from the talk "Esoteric sub-domain enumeration techniques" given at Bugcrowd LevelUp 2017 virtu…☆631Updated 5 years ago
- ☆270Updated 2 years ago
- A tool to capture all the git secrets by leveraging multiple open source git searching tools☆1,103Updated 5 years ago
- Ephemera and other documentation associated with the 1337list project.☆396Updated 6 years ago
- ☆595Updated 3 years ago
- Multi Tool Subdomain Enumeration☆722Updated 3 years ago
- Setup script for Regon-ng☆915Updated 3 years ago
- Generate vulnerable virtual machines on the fly (current team development is taking place in the cliffe/SecGen fork)☆315Updated 5 years ago