secdec / pen-test-automationLinks
A framework for automating penetration testing using a plugin based architecture
☆41Updated 3 years ago
Alternatives and similar repositories for pen-test-automation
Users that are interested in pen-test-automation are comparing it to the libraries listed below
Sorting:
- Terraform configuration to build a Burp Private Collaborator Server☆25Updated 8 years ago
- Dockerized version of Sn1per (https://github.com/1N3/Sn1per)☆60Updated 7 years ago
- Vulnerability consolidation and management tool, enhances scan results by merging different findings of the same weakness across multiple…☆24Updated 2 years ago
- A collection of scripts used to interact with the Burp Rest API☆55Updated 6 years ago
- ☆38Updated 5 years ago
- This burpsuite extender provides a solution on testing Enterprise applications that involve security Authorization tokens into every HTTP…☆47Updated 6 years ago
- A number of scripts POC's and problems solved as pentests move along.☆44Updated last year
- ☆25Updated 4 years ago
- Find unreferenced AWS S3 buckets which have CloudFront CNAME records pointing to them☆37Updated 7 years ago
- Ansible module for OWASP ZAP using Python API to scan web targets for security issues☆14Updated 7 years ago
- Extension adds a new tab in Burp Suite called Extractor☆42Updated 6 years ago
- Advanced Vulnerable Web Application (AVWA)☆14Updated 8 years ago
- A multi-processed, multi-threaded scanner to discover web directories on multiple URLs.☆21Updated 6 years ago
- ArmourBird CSF - Container Security Framework☆44Updated 3 years ago
- ☆13Updated 3 years ago
- Slides of the talk on Injection attacks in apps with NoSQL Backends, given at null OWASP Bangalore monthly meet on 27th April 2019☆22Updated 6 years ago
- Multithreaded Padding Oracle Attack on Oracle OAM (CVE-2018-2879)☆25Updated 6 years ago
- Collection of exploits/POC for PrestaShop cookie vulnerabilities (CVE-2018-13784)☆48Updated 7 years ago
- WebFuzzer - Web Application Security Scanner by Cystack Team☆25Updated 8 years ago
- All the information provided on this site is for educational purposes only.☆18Updated last year
- Terraform configuration to build a Burp Private Collaborator Server☆29Updated 7 years ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆33Updated 7 years ago
- Framework for Automated Security Testing that is Scaleable and Asynchronous built on Microservices☆18Updated 9 years ago
- Docker Pentest Lists are collection of Dockerfiles or Links to Dockerfiles for containers used in Penetration Tests☆21Updated 8 years ago
- Scan for open S3 buckets and dump☆38Updated 7 years ago
- RFD Checker - security CLI tool to test Reflected File Download issues☆64Updated 6 years ago
- Disrupt WAF by abusing SSL/TLS Ciphers☆48Updated 6 years ago
- burp extender for fuzzing☆10Updated 7 years ago
- Automatically forward HTTP GET & POST requests to SQLMap's API to test for SQLi and XSS☆81Updated 2 years ago
- Checklist and tools for increasing security of Apache Airflow☆32Updated 4 years ago