A list of threat sinks used in the manual security source code review for application security
☆76May 9, 2023Updated 3 years ago
Alternatives and similar repositories for CodeAllTheThings
Users that are interested in CodeAllTheThings are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- PoC + vulnerability details for CVE-2022-25262 / JetBrains Hub single-click SAML response takeover☆17Jul 5, 2022Updated 4 years ago
- A cheatsheet for exploiting server-side SVG rasterization.☆31Jul 5, 2022Updated 4 years ago
- Regex patterns for manual application source code review☆34Dec 14, 2020Updated 5 years ago
- Tool for checking reflecting Parameters in a URL.☆10Aug 31, 2020Updated 5 years ago
- bug bounty automation☆14Jul 2, 2021Updated 5 years ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- PoC for CVE-2022-24342: account takeover via CSRF in GitHub authentication☆37Jul 5, 2022Updated 4 years ago
- Hidden parameters discovery suite☆225Nov 14, 2022Updated 3 years ago
- Some Tutorials and Things to Help Bug Hunter☆31Mar 17, 2021Updated 5 years ago
- Megagrep helps beginning a code review by searching for keywords in the code using "grep". It does not search for vulnerabilities directl…☆14Aug 8, 2022Updated 3 years ago
- It's an watcher for new scopes added to bounty-targets-data and send you alert to Slack.☆60Mar 2, 2022Updated 4 years ago
- ☆23Jun 30, 2021Updated 5 years ago
- gSAST - Grep Static Analysis Security Tool☆13Mar 30, 2024Updated 2 years ago
- Semgrep rules to identify GWT attack surface☆12Apr 28, 2022Updated 4 years ago
- CVE-2024-30056 Microsoft Edge (Chromium-based) Information Disclosure Vulnerability☆17May 27, 2024Updated 2 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Learn what is NoSQL injection and how to find them ?☆10Jul 22, 2021Updated 5 years ago
- TProx is a fast reverse proxy path traversal detector and directory bruteforcer.☆30Sep 16, 2021Updated 4 years ago
- Automatic tool using for crawling code to find low-hang fruit vulnerabilities - Based on OWASP Secure Code Review Guide☆21Aug 31, 2020Updated 5 years ago
- ☆15Sep 4, 2025Updated 10 months ago
- Advanced external automation on bug bounty programs by running the best set of tools to perform scanning and finding out vulnerabilities.☆106Jun 28, 2022Updated 4 years ago
- Converts exported results of CAPA tool from .json format to another formats supporting by different tools.☆22Feb 15, 2022Updated 4 years ago
- ☆18Oct 4, 2021Updated 4 years ago
- Automatically exported from code.google.com/p/ra2-dom-xss-scanner☆29Jan 4, 2016Updated 10 years ago
- Here are some common interview questions for an application security position you can review for your own interview, along with example a…☆34Apr 17, 2022Updated 4 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Pointer was developed for massive hunting and mapping Cobalt Strike servers exposed on the internet.☆68Apr 12, 2022Updated 4 years ago
- ScriptKKiddie's WebAppSec Testing or Web Application Security Testing based on OWASP is a repository that contains useful resources, & st…☆16Aug 19, 2021Updated 4 years ago
- This search engine automates the discovery of sensitive information using customized dorks across GitHub, Google, and Shodan.☆16Oct 16, 2024Updated last year
- TapJacking Attacks Demo☆20Apr 25, 2021Updated 5 years ago
- A basic golang server/client for distributing tasks over multiple systems.☆39Jul 20, 2020Updated 6 years ago
- Install Burpsuite pro in Linux OS☆17Mar 24, 2024Updated 2 years ago
- Signatures for jaeles scanner by @j3ssie☆117Apr 20, 2024Updated 2 years ago
- Easily schedule commands to run multiple times at set intervals (like a cronjob, but with one command)☆85Apr 5, 2021Updated 5 years ago
- A tools for JavaScript Recon☆24Jul 25, 2020Updated 6 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- grapX will iterate through the URLs and grep the endpoints with all possible extensions.☆55Mar 23, 2021Updated 5 years ago
- Performing automated scan using Burp Suite Pro & Vmware Burp Rest API☆55Sep 30, 2022Updated 3 years ago
- Burp-Addons : Some of Burp Addons I use ( Mindak ak fahem )☆12Sep 1, 2022Updated 3 years ago
- Automated blind-xss search for Burp Suite☆23Mar 28, 2022Updated 4 years ago
- Fast Golang Tool To Get Cname For Domains and Subdomain☆16Feb 7, 2025Updated last year
- Burp Scanner extension to fingerprint and actively scan instances of the Adobe Experience Manager CMS. It checks the website for common m…☆76Mar 22, 2024Updated 2 years ago
- A CLI tool to extract, analyze, and filter JavaScript links from web pages or URLs, with regex matching and structured JSON output.☆19Jan 6, 2025Updated last year