psiinon / owasp-projects
☆30Updated last year
Related projects ⓘ
Alternatives and complementary repositories for owasp-projects
- A vulnerable environment for exploring common GCP misconfigurations and vulnerabilities☆25Updated 4 months ago
- ☆55Updated last year
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.☆39Updated 11 months ago
- This repository hosts several snippets and file related to the BsidesLV 2024 talk about Shadow and Zombie APIs by me☆17Updated 3 months ago
- A simple script that generates an Excel friendly CSV file from an Amass JSON file.☆13Updated 2 years ago
- A small library to alter AWS API requests; Used for fuzzing research☆21Updated last year
- InfoSec OpenAI Examples☆19Updated 11 months ago
- ☆10Updated 10 months ago
- This tool analyzes a given Gitlab repository and searches for dangling or force-pushed commits containing potential secret or interesting…☆39Updated 3 months ago
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagrams☆98Updated 9 months ago
- GCP GOAT is the vulnerable application for learn the GCP Security☆62Updated last year
- Additional active scan checks for BURP☆20Updated last month
- The Secure Coding Practices Quick-reference Guide from OWASP☆32Updated 11 months ago
- Offensive Terraform module which creates Kali Linux from the AWS marketplace and installs cloud security tools (Pacu, Cloudsplaining, Sco…☆18Updated 4 years ago
- Paramalyzer - Burp extension for parameter analysis of large-scale web application penetration tests.☆29Updated 2 years ago
- MyOpenVDP is a free web application to install a vulnerability disclosure policy or a vulnerability disclosure program on your assets. (V…☆26Updated 3 months ago
- Clean accounts over permissions in GCP infra at scale☆71Updated last year
- Create tar/zip archives that try to exploit zipslip vulnerability.☆45Updated 2 months ago
- ☆38Updated 5 months ago
- IMDSPOOF is a cyber deception tool that spoofs the AWS IMDS service to return HoneyTokens that can be alerted on.☆92Updated 11 months ago
- A steampipe plugin to query projectdiscovery.io tools.☆26Updated 3 months ago
- Damn Vulnerable SCA Application☆15Updated last month
- OWASP Foundation Web Respository☆27Updated last year
- Build a CVE library with aggregated CISA, EPSS and CVSS data☆27Updated last year
- Daily updates from leaked data search engines and aggregators☆86Updated last week
- Run Capture the Flags and Security Trainings with OWASP WrongSecrets☆43Updated this week
- 🧪 Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.☆33Updated last month
- This GitHub Action sends a reverse shell from a runner via Azure Storage Account blobs☆36Updated last month
- Nuclei plugins to audit Chrome extensions☆64Updated 4 months ago
- Blogpost series showcasing interesting cloud - web app security bugs☆46Updated last year