sec4you / VulnLabsLinks
docker-compose bringing up multiple vulnerable applications inside containers.
☆19Updated 7 years ago
Alternatives and similar repositories for VulnLabs
Users that are interested in VulnLabs are comparing it to the libraries listed below
Sorting:
- ☆32Updated 6 years ago
- Collection of scripts that aid in penetration testing of JSON Web Tokens☆59Updated 6 years ago
- This repository for training application security.☆26Updated 6 years ago
- Fuzzing for LFI using Burpsuite☆66Updated 9 years ago
- Plattform to develop and experiment with existing java web attacks.☆31Updated 7 years ago
- RAS(RAndom Subdomain) Fuzzer☆42Updated 5 years ago
- A proof of concept to dump Django website's source code affected by NGINX's off-by-slash alias directive misconfiguration.☆24Updated 3 years ago
- This burpsuite extender provides a solution on testing Enterprise applications that involve security Authorization tokens into every HTTP…☆47Updated 6 years ago
- Simple Server Side Request Forgery services enumeration tool.☆55Updated 7 years ago
- VyAPI - A cloud based vulnerable hybrid Android App☆86Updated 5 years ago
- A tool to evaluate Content Security Policies.☆71Updated 5 years ago
- Simple burp extension for routing traffic over tor. It instruments tor to switch to a new circuit after every N requests.☆20Updated 3 years ago
- Burp Suite extension to passively scan for applications revealing server error messages☆64Updated last year
- psychoPATH - hunting file uploads & LFI in the dark. This tool is a customisable payload generator designed for blindly detecting LFI & w…☆19Updated 7 years ago
- web-based-fuzzer☆32Updated 5 years ago
- Deploy a Private Burpsuite Collaborator using boto3 Python Library☆58Updated 5 years ago
- Pulse SSL VPN Arbitrary File Read burp extension☆24Updated 6 years ago
- websocket-connection-smuggler☆66Updated 5 years ago
- A simple framework for sending test payloads for known web CVEs.☆133Updated 4 years ago
- A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain.☆26Updated 7 years ago
- A tool for fetching archived URLs (to be rewritten in Go).☆41Updated 7 years ago
- Burp extension that performs a passive scan to identify cloud buckets and then test them for publicly accessible vulnerabilities☆46Updated 2 years ago
- gathers the XSS cheatsheet payloads and creates a usable wordlist☆74Updated 4 years ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆34Updated 7 years ago
- This is a Burpsuite plugin built to enable you to import your directory bruteforcing results into burp for easy viewing later. This is an…☆36Updated 2 years ago
- Broken Link Hijacking Burp Extension☆57Updated 6 years ago
- XXRF Shots - Useful for testing SSRF vulnerability☆74Updated 2 years ago
- Scan secrets from Continuous Integration Build Logs☆53Updated 6 years ago
- A Burp Suite content discovery plugin that add the smart into the Buster!☆32Updated 7 years ago
- Auto Recon Bash Script☆31Updated 11 months ago