spaceraccoon / npm-scanLinks
An extensible, heuristic-based vulnerability scanning tool for installed npm packages
☆50Updated 4 years ago
Alternatives and similar repositories for npm-scan
Users that are interested in npm-scan are comparing it to the libraries listed below
Sorting:
- Detect exposed API keys on GitHub commits.☆34Updated 3 years ago
- Scan secrets from Continuous Integration Build Logs☆52Updated 5 years ago
- List of special metadata IPs used in cloud services☆11Updated 6 years ago
- Simple wrapper for meg that sieves through meg's output for you.☆60Updated 5 years ago
- ☆16Updated 6 years ago
- OAuth Security Cheatsheet☆40Updated 11 years ago
- A tool to evaluate Content Security Policies.☆71Updated 5 years ago
- Automate common Chrome Debug Protocol tasks to help debug web applications from the command-line and actively monitor and intercept HTTP …☆73Updated 4 years ago
- Proof-of-concept CORS exploitation tool.☆35Updated 6 years ago
- Reclaim control of your Burp Suite Repeater tabs with this powerful extension☆68Updated 4 years ago
- Vulnerabilities discovered in npm packages [Berkeley PL & Security Research]☆42Updated last year
- A Chrome extension static analysis tool to help aide in security reviews.☆157Updated 2 years ago
- This repo gives an overview of some GCP metadata API attack and defend patterns☆77Updated 5 years ago
- Some random scripts. Just trying to be like the cool kids.☆94Updated 7 years ago
- Reverse engineers GQL Schema and generates template payloads☆46Updated 6 years ago
- Nodejs application intentionally vulnerable to SSRF☆42Updated 2 years ago
- retrive metadata endpoint data with these one liners.☆41Updated 5 years ago
- Extract relative urls from a heap snapshot☆87Updated 4 years ago
- bountytpl – template generator cli. By using a template similar to the ones for Template Generator (https://github.com/fransr/template-ge…☆47Updated 6 years ago
- ☆53Updated last year
- Burp Suite extension to track vulnerability assessment progress☆59Updated 5 years ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆33Updated 6 years ago
- Application and Service Fingerprinting☆133Updated 2 years ago
- Manual JavaScript Linting is a Bug☆49Updated 4 years ago
- A tool to bruteforce nameservers when working with subdomain delegations to AWS.☆58Updated 6 years ago
- A bash script that fetches and maintains thousands of DNS resolvers☆65Updated 5 years ago
- Transparently log all data passed into known JavaScript sinks - Sink Logger extension for Burp.☆49Updated 3 years ago
- Chrome extension to aid in finding DOMXSS by simple taint analysis of string values.☆80Updated 6 years ago
- A CLI tool to interact with hackerone.com. This was my submission for HackerOne's Summer 2018 Hack Day.☆40Updated 7 years ago
- ReconJSON is a project dedicated to creating a flexible and consistent JSON format across popular recon tools.☆102Updated 6 years ago