schibsted / artishockLinks
A tool to investigate Dependency Confusion in Artifactory
☆23Updated 6 months ago
Alternatives and similar repositories for artishock
Users that are interested in artishock are comparing it to the libraries listed below
Sorting:
- This repo gives an overview of some GCP metadata API attack and defend patterns☆77Updated 5 years ago
- ☆21Updated 5 years ago
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆106Updated 6 years ago
- Security scanning & static analysis tool☆93Updated last year
- Semgrep rules corresponding to the OWASP ASVS standard☆28Updated 5 years ago
- Assorted tools for security-related task for git repositories☆59Updated 3 years ago
- Externalize Java application access to protected resources as log messages.☆43Updated 3 weeks ago
- Salesforce object access auditor☆117Updated 2 years ago
- A Security Scanner for Go☆26Updated 6 years ago
- Application and Service Fingerprinting☆133Updated 2 years ago
- Pentester-focused Docker registry tool to enumerate and pull images☆113Updated 5 years ago
- OAuth 2.0 Dynamic Security Scanner☆33Updated 4 years ago
- Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆78Updated 3 years ago
- My collection of Semgrep rules for vulnerability detection on source code (swift, java, cobol)☆37Updated 2 months ago
- ☆27Updated last month
- Salesforce Policy Deviation Checker☆30Updated 5 years ago
- A tool for automatically gathering sensitive information from exposed Jenkins servers☆104Updated 2 years ago
- Monitoring GitHub for sensitive data shared publicly☆66Updated 3 years ago
- OAuth Security Cheatsheet☆40Updated 11 years ago
- ☆74Updated 5 years ago
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆139Updated 4 years ago
- Scans every git push to your Github organisations to find unwanted secrets.☆87Updated 6 months ago
- A powerful containerized tool that automatically downloads, extracts, and scans packages from PyPI and npm for embedded secrets, API keys…☆18Updated 3 months ago
- ☆45Updated 4 years ago
- A collection of my Semgrep rules☆50Updated 2 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆65Updated 2 years ago
- Burp Extension for AWS Signing☆89Updated 10 months ago
- Python script to check GitHub accounts for world-editable wiki pages☆21Updated 2 years ago
- drHEADer helps with the audit of security headers received in response to a single request or a list of requests.☆111Updated 10 months ago
- Jaqen - Simple DNS rebinding☆75Updated 7 years ago