spaceraccoon / npm-scanLinks
An extensible, heuristic-based vulnerability scanning tool for installed npm packages
☆50Updated 4 years ago
Alternatives and similar repositories for npm-scan
Users that are interested in npm-scan are comparing it to the libraries listed below
Sorting:
- Scan secrets from Continuous Integration Build Logs☆53Updated 6 years ago
- Simple wrapper for meg that sieves through meg's output for you.☆59Updated 6 years ago
- OAuth Security Cheatsheet☆41Updated 11 years ago
- A tool to evaluate Content Security Policies.☆71Updated 5 years ago
- ☆53Updated last month
- Automate common Chrome Debug Protocol tasks to help debug web applications from the command-line and actively monitor and intercept HTTP …☆73Updated 4 years ago
- Rules for detecting security issues in Angular 1.x☆30Updated 2 years ago
- Vulnerabilities discovered in npm packages [Berkeley PL & Security Research]☆42Updated last year
- Detect exposed API keys on GitHub commits.☆35Updated 3 years ago
- Proof-of-concept CORS exploitation tool.☆35Updated 6 years ago
- A repository for GraphQL Extension for Burp Suite☆57Updated 7 years ago
- Nodejs application intentionally vulnerable to SSRF☆42Updated 2 years ago
- retrive metadata endpoint data with these one liners.☆41Updated 5 years ago
- Python script to check GitHub accounts for world-editable wiki pages☆21Updated 2 years ago
- This repo gives an overview of some GCP metadata API attack and defend patterns☆78Updated 5 years ago
- Burp Suite extension to track vulnerability assessment progress☆59Updated 5 years ago
- Reclaim control of your Burp Suite Repeater tabs with this powerful extension☆68Updated 4 years ago
- List of special metadata IPs used in cloud services☆11Updated 6 years ago
- All-in-one AWS S3 bucket tool for pentesters.☆73Updated 6 years ago
- Chrome Extension for XSS Hunter Payloads☆41Updated 9 years ago
- A bash script that fetches and maintains thousands of DNS resolvers☆65Updated 5 years ago
- Manual JavaScript Linting is a Bug☆48Updated 4 years ago
- A CLI tool to interact with hackerone.com. This was my submission for HackerOne's Summer 2018 Hack Day.☆41Updated 7 years ago
- XXRF Shots - Useful for testing SSRF vulnerability☆74Updated 2 years ago
- Scans packages in npm and pypi for secrets☆31Updated 6 years ago
- A central place to keep track of relevant BountyMachine talks, blogs, and interesting things!☆34Updated 7 years ago
- Application and Service Fingerprinting☆132Updated 3 years ago
- A Chrome extension static analysis tool to help aide in security reviews.☆162Updated 2 years ago
- Transparently log all data passed into known JavaScript sinks - Sink Logger extension for Burp.☆49Updated 3 years ago
- bountytpl – template generator cli. By using a template similar to the ones for Template Generator (https://github.com/fransr/template-ge…☆48Updated 6 years ago