secdec / attack-surface-detector-cliLinks
☆81Updated 3 years ago
Alternatives and similar repositories for attack-surface-detector-cli
Users that are interested in attack-surface-detector-cli are comparing it to the libraries listed below
Sorting:
- A tool geared towards pentesting APIs using OpenAPI definitions.☆178Updated 2 years ago
- Parse OpenAPI documents into Burp Suite for automating OpenAPI-based APIs security assessments (approved by PortSwigger for inclusion in …☆200Updated last year
- BurpSuite using the document and some extensions☆69Updated 5 years ago
- The Burp extension to check JWT (JSON Web Tokens) for using keys from known from public sources☆134Updated 4 years ago
- A script for installing private Burp Collaborator with free Let's Encrypt SSL-certificate☆210Updated last year
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆103Updated last year
- GraphQL security testing tool☆122Updated 3 years ago
- This Burpsuite plugin allows for multiple web app testers to share their proxy history with each other in real time. Requests that comes …☆258Updated 2 years ago
- A simple remote scanner for Atlassian Jira☆121Updated 2 years ago
- Vulnerable SAML infrastructure training applicaiton☆53Updated 2 years ago
- Burp Automator - A Burp Suite Automation Tool. It provides a high level CLI and Python interfaces to Burp Suite scanner and can be used t…☆199Updated last month
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆128Updated 2 years ago
- Tools to assess the DNS security of web applications☆128Updated 2 years ago
- Piper Burp Suite Extender plugin☆122Updated last year
- Ugly Duckling is a lightweight scanner built specifically for our Crowdsource community to submit proof-of-concept modules☆188Updated 3 years ago
- ☆148Updated 3 years ago
- A Burp Suite Extension for parsing Project Files from the CLI.☆87Updated 9 months ago
- A framework built on top of Burp's Python Scripter extension.☆88Updated last year
- Enhanced fork with logging, OpenAPI 3.0 and Python 3 for security monitoring workshops☆42Updated last year
- Application and Service Fingerprinting☆133Updated 2 years ago
- A blazing fast & feature rich Amazon S3 bucket enumerator.☆98Updated 2 years ago
- Workshop given at Hack in Paris 2019☆122Updated 2 years ago
- Clientside vulnerability / reflected xss fuzzer☆150Updated last year
- ☆71Updated 4 years ago
- A list of "secrets" from JWT sample code and readme files.☆56Updated 4 years ago
- Searching for virtual hosts among non-resolvable domains☆88Updated 5 years ago
- Damn Vulnerable Java (EE) Application☆139Updated last year
- Detectify Crowdsource Challenge☆69Updated 3 years ago
- JSON RSA to HMAC and None Algorithm Vulnerability POC☆61Updated 5 years ago
- A command line tool to search AttackerKB.☆52Updated 4 years ago