schibsted / artishock
A tool to investigate Dependency Confusion in Artifactory
☆23Updated 2 years ago
Alternatives and similar repositories for artishock:
Users that are interested in artishock are comparing it to the libraries listed below
- Reference architecture and proof of concept implementation for supply chain security gateway☆23Updated 2 years ago
- ☆21Updated 5 years ago
- Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆76Updated 3 years ago
- A Security Scanner for Go☆26Updated 6 years ago
- Assorted tools for security-related task for git repositories☆59Updated 3 years ago
- Burp Extension for AWS Signing☆88Updated 3 months ago
- Proof-of-concept CORS exploitation tool.☆35Updated 5 years ago
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆106Updated 6 years ago
- Externalize Java application access to protected resources as log messages.☆41Updated this week
- An Evil OIDC Server☆53Updated 2 years ago
- S3 bucket enumerator☆44Updated 7 years ago
- ☆22Updated 2 years ago
- My custom semgrep rules☆21Updated 4 years ago
- A tool to evaluate Content Security Policies.☆71Updated 4 years ago
- My collection of Semgrep rules for vulnerability detection on source code (swift, java)☆34Updated last year
- ☆27Updated 5 months ago
- ☆70Updated 3 years ago
- ☆10Updated 6 years ago
- This repo gives an overview of some GCP metadata API attack and defend patterns☆76Updated 5 years ago
- Push notifications to Slack channel or to custom server based on BurpSuite response conditions.☆17Updated 4 years ago
- Application and Service Fingerprinting☆133Updated 2 years ago
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.☆40Updated last year
- A collection of my Semgrep rules☆49Updated last year
- Monitoring GitHub for sensitive data shared publicly☆66Updated 3 years ago
- Index all certificates from certificate transparancy into Elasticsearch☆23Updated 7 years ago
- Scans every git push to your Github organisations to find unwanted secrets.☆87Updated last year
- Example of a serverless web reconaissance workflow's AWS architecture.☆11Updated 2 years ago
- Security scanning & static analysis tool☆94Updated 6 months ago
- Detect exposed API keys on GitHub commits.☆34Updated 2 years ago
- ☆74Updated 4 years ago