spoofzu / jvmxrayLinks
Externalize Java application access to protected resources as log messages.
☆42Updated last month
Alternatives and similar repositories for jvmxray
Users that are interested in jvmxray are comparing it to the libraries listed below
Sorting:
- Security Payload Unit Test Repository (SPUTR)☆86Updated 2 years ago
- Semgrep rules corresponding to the OWASP ASVS standard☆27Updated 4 years ago
- The OpenSSF CVE Benchmark consists of code and metadata for over 200 real life CVEs, as well as tooling to analyze the vulnerable codebas…☆148Updated last year
- Code Review Audit Script Scanner☆140Updated 3 months ago
- This repo gives an overview of some GCP metadata API attack and defend patterns☆76Updated 5 years ago
- ☆21Updated 5 years ago
- Java Observability Toolkit☆61Updated last year
- ☆57Updated 5 years ago
- AppSecPipeline Specification for DevOps automation.☆40Updated 2 years ago
- Orchestron is an Application Vulnerability Management and Correlation Tool.Orchestron helps you solve one key problem "Find and fix vulne…☆31Updated 2 years ago
- Secure Coding Rules for Java☆30Updated 10 months ago
- DupeKeyInjector☆135Updated 3 years ago
- ☆66Updated 2 weeks ago
- Scripts that we use for pentesting☆42Updated 8 years ago
- Presentations, training modules, and other education materials from Duo Security's Application Security team.☆75Updated 4 years ago
- Automate security tests using Burp Suite.☆229Updated last year
- A repository for GraphQL Extension for Burp Suite☆57Updated 6 years ago
- Code Pulse is a real-time code coverage tool for penetration testing activities☆122Updated 2 years ago
- Application and Service Fingerprinting☆133Updated 2 years ago
- Burp Extension for AWS Signing☆89Updated 6 months ago
- Repository to showcase various configuration recipes with various technologies☆36Updated 2 years ago
- An extension for BurpSuite that highlights SSO messages in Burp's proxy window..☆118Updated 4 years ago
- DEF CON 26 Workshop - Attacking & Auditing Docker Containers Using Open Source☆108Updated 5 years ago
- A tiny Java agent that blocks attacks against unsafe deserialization☆85Updated 7 years ago
- Salesforce Policy Deviation Checker☆30Updated 4 years ago
- Cracker for Apache.lang.commons RandomStringUtils(). Code for "The Java Soothsayer" talk at EkoParty 2017 by Alejo Popovici.☆32Updated 7 years ago
- Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆77Updated 3 years ago
- Static Token And Credential Scanner☆96Updated 2 years ago
- OpenAPI 2.0 (Swagger) fuzzer written in python. Basically TnT for your API.☆111Updated 2 years ago
- ☆71Updated 7 years ago