pypi-data / pypi-aws-secrets
This repo scans pypi for AWS keys
☆105Updated last year
Alternatives and similar repositories for pypi-aws-secrets:
Users that are interested in pypi-aws-secrets are comparing it to the libraries listed below
- Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration☆292Updated last week
- How GitHub Actions workflows can be hacked☆147Updated 7 months ago
- An Open Letter to the OWASP Board☆106Updated last year
- Corsair_scan is a security tool to test Cross-Origin Resource Sharing (CORS).☆122Updated last year
- boostsecurityio/lotp☆116Updated 2 weeks ago
- ☆83Updated 9 months ago
- Scan DockerHub images that match a keyword to find secrets.☆55Updated 4 years ago
- truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)☆114Updated last year
- clif is a command-line interface (CLI) application fuzzer, pretty much what wfuzz or ffuf are for web. It was inspired by sudo vulnerabil…☆99Updated 2 years ago
- This repository collects lists of security-relavent Python APIs, along with examples of exploits using those APIs☆35Updated 3 years ago
- Scans every git push to your Github organisations to find unwanted secrets.☆87Updated last year
- Manager of third-party sources of Semgrep rules 🗂☆81Updated 8 months ago
- A custom built DNS bruteforcer with multi-threading, and handling of bad resolvers.☆57Updated 2 years ago
- Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆76Updated 3 years ago
- XS-Leaks Wiki☆157Updated last month
- Open a DNS server that knows no records but records every request. Used for DNS exfiltration.☆68Updated 3 years ago
- openrisk is a tool that generates a risk score based on the results of a Nuclei scan.☆166Updated last month
- Example repository for GitHub Actions Time of Check to Time of Use (TOCTOU vulnerabilities)☆23Updated 8 months ago
- ☆110Updated last year
- Nuclei plugins to audit Chrome extensions☆64Updated 8 months ago
- Proof-of-concept code for research into GitHub Actions Cache poisoning.☆22Updated 2 weeks ago
- Find secrets in your codebase☆123Updated 3 weeks ago
- Holds the public Hacking the Cloud CTFs.☆55Updated last year
- Script to audit GitHub Action Workflow files for potential vulnerabilities.☆153Updated 7 months ago
- A bash script that automates the exfiltration of data over dns in case we have blind command execution on a server with egress filtering☆210Updated 4 years ago
- Burp plugin for the 1Password session protocol for use by security researchers.☆62Updated 3 months ago
- Private key usage verification☆430Updated 3 months ago
- A simple tool that helps to find assets/domains based on the Google Analytics ID.☆173Updated 2 months ago
- a smart DNS response-guided subdomain fuzzer☆150Updated 2 years ago
- ☆63Updated 2 years ago