snyk-labs / exploit-workshopLinks
A step by step workshop to exploit various vulnerabilities in Node.js and Java applications
☆157Updated last year
Alternatives and similar repositories for exploit-workshop
Users that are interested in exploit-workshop are comparing it to the libraries listed below
Sorting:
- A tool geared towards pentesting APIs using OpenAPI definitions.☆185Updated 3 years ago
- Corsair_scan is a security tool to test Cross-Origin Resource Sharing (CORS).☆123Updated 2 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆110Updated 2 years ago
- Workshop given at Hack in Paris 2019☆126Updated 2 years ago
- vulnerable single sign on☆151Updated last year
- A lab to play with authentication and authorisation problems☆98Updated 2 years ago
- This repository contains an example Python API that is vulnerable to several different web API attacks.☆70Updated 2 years ago
- ☆148Updated 3 years ago
- ☆72Updated 5 years ago
- ☆45Updated 5 years ago
- Manual JavaScript Linting is a Bug☆48Updated 4 years ago
- Everything you need about Burp Extension Generation☆157Updated 3 years ago
- Material for the training "Developing Burp Suite Extensions – From Manual Testing to Security Automation"☆357Updated 5 years ago
- A set of simple servers (currently HTTP/HTTPS and DNS) which allow configurable and scriptable responses to network requests.☆62Updated 3 years ago
- [A]ndroid [A]pplication [P]entest [G]uide☆123Updated 6 years ago
- Reclaim control of your Burp Suite Repeater tabs with this powerful extension☆68Updated 4 years ago
- Damn Vulnerable Java (EE) Application☆144Updated 2 years ago
- ☆45Updated 5 years ago
- learning case to prepare OSWE☆37Updated 6 years ago
- A natural evolution of Burp Suite's Repeater tool☆94Updated 2 years ago
- HackerOne Wallpapers☆76Updated 4 years ago
- Weaponizing Live CT logs for automated monitoring of assets☆134Updated 4 years ago
- A step-by-step walkthrough of CloudGoat 2.0 scenarios.☆134Updated 5 years ago
- MetaSec.js combines all the free open-source security tools to identify issues with JavaScript and automates the boring parts☆82Updated 3 years ago
- Ugly Duckling is a lightweight scanner built specifically for our Crowdsource community to submit proof-of-concept modules☆187Updated 4 years ago
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆139Updated 4 years ago
- Methodology for high-quality web application security testing - https://github.com/tprynn/web-methodology/wiki☆212Updated last year
- Parse OpenAPI documents into Burp Suite for automating OpenAPI-based APIs security assessments (approved by PortSwigger for inclusion in …☆206Updated 2 years ago
- Extensive code infrastructure for finding unintended information leaks in files, git repositories and much more.☆28Updated 3 years ago
- The Burp extension to check JWT (JSON Web Tokens) for using keys from known from public sources☆138Updated 5 years ago