sqreen / SPAuditLinks
☆39Updated 2 years ago
Alternatives and similar repositories for SPAudit
Users that are interested in SPAudit are comparing it to the libraries listed below
Sorting:
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 4 years ago
- All-in-one tool for managing vulnerability reports from AppSec pipelines☆108Updated 3 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆66Updated 2 years ago
- This repo gives an overview of some GCP metadata API attack and defend patterns☆78Updated 5 years ago
- JavaScript Secure Coding Practices guide☆180Updated 4 years ago
- Use burp's JS static code analysis on code from your local system.☆42Updated 9 years ago
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆139Updated 4 years ago
- Intentionally Vulnerable Serverless Functions to understand the specifics of Serverless Security Vulnerabilities☆136Updated 3 years ago
- A collection of response templates for invalid bug bounty reports.☆90Updated 7 years ago
- Automate common Chrome Debug Protocol tasks to help debug web applications from the command-line and actively monitor and intercept HTTP …☆73Updated 4 years ago
- Corsair_scan is a security tool to test Cross-Origin Resource Sharing (CORS).☆123Updated 2 years ago
- A static-code-analysis tool for performing security-focused code reviews. It enables an auditor to swiftly map the attack-surface of a la…☆142Updated last year
- ☆35Updated 5 years ago
- Bento Toolkit is a minimal fedora-based container for penetration tests and CTF with the sweet addition of GUI applications.☆76Updated 5 years ago
- ☆18Updated 5 years ago
- ☆57Updated 5 years ago
- OWASP SecurityRAT (version 1.x) - Tool for handling security requirements in development☆186Updated 5 months ago
- Route53/CloudFront Vulnerability Assessment Utility☆87Updated 2 years ago
- DEPRECATED - web security checklist for Firefox Services☆78Updated 5 years ago
- An ultra-compact intro (or refresher) to Web Application Security.☆32Updated 7 years ago
- eslintrc.js config files for running static analysis on JavaScript to identify security issues.☆63Updated 5 years ago
- Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆78Updated 3 years ago
- Static security checker for Dockerfiles☆102Updated last week
- Mitigate security concerns of Dependency Confusion supply chain security risks☆51Updated 3 weeks ago
- Scan for vulnerabilities in JavaScript libraries you use (Python port of retirejs)☆51Updated 6 years ago
- A repository for GraphQL Extension for Burp Suite☆57Updated 7 years ago
- OAuth Security Cheatsheet☆41Updated 11 years ago
- A static website template for security pages.☆54Updated 6 months ago
- AutoTriageBot automatically verifies, deduplicates, and suggests payouts for incoming HackerOne reports.☆57Updated 3 years ago
- Presentations, training modules, and other education materials from Duo Security's Application Security team.☆76Updated 4 years ago