spaceraccoon / npm-scan
An extensible, heuristic-based vulnerability scanning tool for installed npm packages
☆50Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for npm-scan
- Scan secrets from Continuous Integration Build Logs☆52Updated 5 years ago
- Manual JavaScript Linting is a Bug☆49Updated 3 years ago
- Extract relative urls from a heap snapshot☆85Updated 3 years ago
- Automate common Chrome Debug Protocol tasks to help debug web applications from the command-line and actively monitor and intercept HTTP …☆73Updated 3 years ago
- Proof-of-concept CORS exploitation tool.☆34Updated 5 years ago
- Mitigate security concerns of Dependency Confusion supply chain security risks☆40Updated 2 years ago
- Reclaim control of your Burp Suite Repeater tabs with this powerful extension☆66Updated 3 years ago
- ☆51Updated 5 months ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆33Updated 6 years ago
- List of special metadata IPs used in cloud services☆11Updated 5 years ago
- Slide Decks and Supporting Content of talks given for Bugcrowd☆16Updated 4 years ago
- Burp Suite extension to track vulnerability assessment progress☆59Updated 4 years ago
- a shared short domain for XSS and other hacks☆31Updated 2 years ago
- XXRF Shots - Useful for testing SSRF vulnerability☆74Updated last year
- Bash one-liners for great justice!☆12Updated 5 years ago
- ☆23Updated 9 months ago
- CircleCI log and security configuration automations☆22Updated 4 years ago
- A tool to bruteforce nameservers when working with subdomain delegations to AWS.☆58Updated 5 years ago
- Fetch known urls from AlienVault's Open Threat Exchange for given hosts☆60Updated 5 years ago
- Transparently log all data passed into known JavaScript sinks - Sink Logger extension for Burp.☆50Updated 2 years ago
- ☆27Updated 4 years ago
- ☆69Updated 3 years ago
- A Burp extension to show the Collaborator client in a tab☆36Updated last year
- Nodejs application intentionally vulnerable to SSRF☆41Updated last year
- Detect exposed API keys on GitHub commits.☆34Updated 2 years ago
- The Outlook HTML Leak Test Project☆41Updated 6 years ago
- A wrapper around jq, to help you parse jq output!☆30Updated 4 years ago
- A Go implementation of dirsearch.☆43Updated 5 years ago