spaceraccoon / npm-zoo
A zoo for malicious NPM packages
☆20Updated 2 years ago
Alternatives and similar repositories for npm-zoo:
Users that are interested in npm-zoo are comparing it to the libraries listed below
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 3 years ago
- Security advisories for Node.js and the JavaScript ecosystem.☆41Updated 3 years ago
- Policy management tool for Node.js☆22Updated 2 years ago
- ☆16Updated 6 years ago
- A tool for detecting regular expression denial-of-service vulnerabilities in Android apps.☆33Updated 8 years ago
- Make it easy to probe the strengths and weaknesses of a hardened Node.js stack☆19Updated 5 years ago
- Vulnerabilities discovered in npm packages [Berkeley PL & Security Research]☆43Updated 7 months ago
- ESLint plugin with rules for finding security issues in React projects.☆18Updated 3 years ago
- ☆12Updated 2 years ago
- A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.☆55Updated 4 months ago
- A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC☆33Updated 3 weeks ago
- Derive property based testing fast-check into a fuzzer for REST APIs☆39Updated 3 years ago
- Discussion area for security aspects of ECMAScript☆64Updated 7 years ago
- This is a tiny Chrome Extension that protects your from Clipboard XSS Attacks☆19Updated 9 years ago
- HTML5 WebSocket message fuzzer☆144Updated 6 years ago
- rules for scanjs functionality☆28Updated 3 years ago
- DirBuster for Node.js☆20Updated 5 years ago
- Programmatically fetch security vulnerabilities with one or many strategies (NPM Audit, Sonatype, Snyk, Node.js DB).☆30Updated 3 weeks ago
- Static analysis tool for javascript code based. Scanjs uses Esprima to convert sources to AST, then walks AST looking for patterns.☆54Updated 10 years ago
- Scan secrets from Continuous Integration Build Logs☆52Updated 5 years ago
- Generic SAST Library☆126Updated 2 months ago
- Mitigate security concerns of Dependency Confusion supply chain security risks☆46Updated 2 years ago
- ☆51Updated 8 months ago
- 🌍 Normalized repository URLs for every package in the npm registry. Updated daily.☆81Updated this week
- Fast browser-based network discovery module☆114Updated 3 years ago
- JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns 🔬.☆230Updated 3 weeks ago
- Automate common Chrome Debug Protocol tasks to help debug web applications from the command-line and actively monitor and intercept HTTP …☆73Updated 3 years ago
- Inject JS to the DOM to find vulnerable JavaScript libraries☆10Updated 4 months ago
- A dashboard for interesting DOM tricks/techniques.☆36Updated 4 years ago
- A library to assist in security-testing Unicode enabled applications during fuzzing, XSS, SQLi, etc.☆42Updated 7 years ago