snyk-labs / php-goofLinks
Snyk PHP Goof - A vulnerable PHP demo application
☆26Updated 2 years ago
Alternatives and similar repositories for php-goof
Users that are interested in php-goof are comparing it to the libraries listed below
Sorting:
- A Broken Application - Very Vulnerable!☆181Updated last week
- Awesome information for WebSockets security research☆299Updated 4 years ago
- A Security Tool for Enumerating WebSockets☆365Updated 4 years ago
- 🕸️ Blazing fast GraphQL endpoints finder using subdomain enumeration, scripts analysis and bruteforce. 🕸️☆227Updated 2 years ago
- Docker toolbox for pentest of web based application.☆176Updated this week
- ☆131Updated 5 years ago
- This repo contains the code for my secure code review challenges. People used this as the primary resource to pass FAANG AppSec interview…☆319Updated last week
- GraphQL automated security testing toolkit☆332Updated last year
- GraphQL threat framework used by security professionals to research security gaps in GraphQL implementations☆347Updated 7 months ago
- Intentionaly very vulnerable API with bonus bad coding practices☆51Updated 2 months ago
- Damn Vulnerable WordPress☆196Updated 2 years ago
- A built-to-be-vulnerable API application based on the OWASP top 10 API vulnerabilities. Use c{api}tal to learn, train and exploit API Sec…☆321Updated 5 months ago
- The only GraphQL wordlist you'll ever need. Operations, field names, type names... Collected on more than 60k distinct GraphQL schemas.☆458Updated 2 years ago
- ☆84Updated 2 years ago
- graphw00f is GraphQL Server Engine Fingerprinting utility for software security professionals looking to learn more about what technology…☆807Updated 8 months ago
- An OSWE Guide☆121Updated 4 years ago
- A collection of awesome AWS S3 tools that collects and enumerates exposed S3 buckets☆409Updated last month
- CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).☆151Updated 10 months ago
- xss development frameworks, with the goal of making payload writing easier.☆152Updated last year
- Repository to house markdown templates for researchers☆215Updated 3 months ago
- BucketLoot is an automated S3-compatible bucket inspector that can help users extract assets, flag secret exposures and even search for c…☆436Updated last month
- list of regex patterns for oauth / api tokens with provided source☆279Updated last year
- CrackQL is a GraphQL password brute-force and fuzzing utility.☆346Updated last year
- Useful tips and resources for preparing for the AWAE exam.☆166Updated 4 years ago
- My personal collection of resources (mostly tools and training materials) for source code security audits.☆105Updated last year
- Whitebox source code review cheatsheet (Based on AWAE syllabus)☆167Updated 3 years ago
- Vulnerable code snippets with fixes for Web2, Web3, API, iOS, Android and Infrastructure-as-Code (IaC)☆164Updated last year
- Find authentication (authn) and authorization (authz) security bugs in web application routes.☆282Updated 5 months ago
- Security Auditor Utility for GraphQL APIs☆598Updated 2 months ago
- A small collection of vulnerable code snippets☆785Updated last year