rcseacord / JavaSCR
Secure Coding Rules for Java
☆30Updated last month
Related projects ⓘ
Alternatives and complementary repositories for JavaSCR
- Externalize Java application access to protected resources as log messages.☆41Updated 6 months ago
- Spring-Boot app for demonstrating security vulnaribilities☆13Updated 5 years ago
- Nmap to MongoDB☆12Updated 5 years ago
- Simple trick to increase readability of exceptions raised by Burp extensions written in Python☆43Updated 7 years ago
- HTTP Desync Attack☆28Updated 4 years ago
- A Burp Extender plugin, that will deserialized java objects and encode them in XML using the Xtream library.☆25Updated 9 years ago
- JMSDigger is JMS API basedEnterprise Messaging Application assessment tool☆31Updated 10 years ago
- Provides a suite of Burp extensions and a maven plugin to automate security tests using BurpSuite.☆25Updated 6 years ago
- ☆28Updated 7 years ago
- Repository to showcase various configuration recipes with various technologies☆35Updated last year
- A tool for auditing medical devices and healthcare infrastructure☆21Updated last year
- Demo server for testing Java deserialization payloads☆15Updated 8 years ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆33Updated 6 years ago
- RFD Checker - security CLI tool to test Reflected File Download issues☆61Updated 5 years ago
- Serverless Workshop☆16Updated last year
- An easy to grep dump of the NVD database showing only; CVE-ID, CVSS Risk Score, and Summary.☆53Updated 2 years ago
- Python Package for burprestapi☆16Updated 4 years ago
- GraphQL application security testing helper☆19Updated last year
- VyAPI - A cloud based vulnerable hybrid Android App☆84Updated 4 years ago
- Tools for auditing WAFS☆18Updated 2 years ago
- WARNING: This is a vulnerable application to test the exploit for the Spring Break vulnerability (CVE-2017-8046). Run it at your own risk…☆11Updated 6 years ago
- The Web Audit Search Engine - Index and Search HTTP Requests and Responses in Web Application Audits with ElasticSearch☆23Updated 6 years ago
- Different writeups and solutions of all CTF Contests that we've played!☆16Updated 5 years ago
- OAuth Security Cheatsheet☆39Updated 10 years ago
- A static analysis API for finding deserialization attack gadgets☆38Updated 2 years ago
- Code Review Audit Script Scanner☆140Updated last year
- Simple XXE test suite generated specifically for SAML interfaces☆22Updated 6 years ago
- Cracker for Apache.lang.commons RandomStringUtils(). Code for "The Java Soothsayer" talk at EkoParty 2017 by Alejo Popovici.☆32Updated 6 years ago
- List of special metadata IPs used in cloud services☆11Updated 5 years ago
- Testing tools for Oracle Forms☆44Updated last year