riteshs4hu / API-Pentesting-ResourcesLinks
A comprehensive collection of resources designed to help you enhance the security of your APIs. In this repository, you'll find a wide range of wordlists, checklists, vulnerable app setups, Logger++ filters and resources dedicated to REST APIs, JSON, and GraphQL.
☆19Updated 10 months ago
Alternatives and similar repositories for API-Pentesting-Resources
Users that are interested in API-Pentesting-Resources are comparing it to the libraries listed below
Sorting:
- A tool for inspecting and analyzing mobile application storage files.☆47Updated 3 months ago
- A collection of solutions for every PortSwigger Academy Lab (in progress)☆104Updated 3 years ago
- A Django web application for curating Bug Bounty educational Videos☆99Updated last year
- Automation of tokens/api keys testing.☆137Updated 2 years ago
- Damn Vulnerable API☆77Updated 6 months ago
- Enumerate old versions of robots.txt paths using Wayback Machine for content discovery☆52Updated last year
- My small collection of reports templates (This is a fork of orignal repo from https://github.com/gwen001/BB-datas)☆125Updated last year
- A Burp Suite extension for CSRF proof of concepts.☆52Updated 2 years ago
- This is my personal repo, which includes bug bounty tips, a collection of tools, one-liners, and other resources I personally prefer whil…☆58Updated 4 months ago
- Here Are Some Bug Bounty Resource From Twitter☆100Updated 3 months ago
- ☆74Updated 11 months ago
- Source Code Review resources for Bug Bounty Hunters & Developers. This Repo is updated consistently.☆72Updated 3 years ago
- This repository contains some of the most exhaustive wordlists for enumeration, gathered from a lot of wordlists available on the Interne…☆104Updated 10 months ago
- Scripts and other stuff.☆132Updated last year
- My OSWE Pre-preperation (i.e. before acutally buying the course) phase plan and notes!☆81Updated last month
- Advanced Reconnaissance and Web Application Discovery☆89Updated 3 years ago
- ☆64Updated last year
- ☆110Updated 2 years ago
- Cyber Security Notes, Methodology, Resources and Tips☆184Updated this week
- Unwaf is a Go tool designed to help identify WAF bypasses using passive techniques, such as: SPF records and DNS history. By default, Unw…☆98Updated 2 months ago
- Private Nuclei Templates☆100Updated 6 months ago
- ☆64Updated last year
- Describe how to use ffuf different options with examples☆89Updated 2 years ago
- An automated recon tool for asset discovery and vulnerability scanning using open-source tools. Supports XSS, SQLi, LFI, RCE, IIS, Open R…☆86Updated this week
- ☆40Updated 3 years ago
- Collection's of Tech Talk that are presented by me :)☆97Updated 8 months ago
- ☆144Updated 6 months ago
- ☆41Updated 2 months ago
- Web Application Penetration Testing☆125Updated 4 months ago
- A BurpSuite extension to create a custom word-list of endpoint and parameters for enumeration and fuzzing☆139Updated 2 years ago