sqreen / SPAudit
☆39Updated last year
Alternatives and similar repositories for SPAudit:
Users that are interested in SPAudit are comparing it to the libraries listed below
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 3 years ago
- Automate common Chrome Debug Protocol tasks to help debug web applications from the command-line and actively monitor and intercept HTTP …☆73Updated 3 years ago
- Use burp's JS static code analysis on code from your local system.☆42Updated 8 years ago
- ☆36Updated 3 years ago
- ☆63Updated 2 years ago
- Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆76Updated 2 years ago
- A static website template for security pages.☆50Updated 5 months ago
- This repo gives an overview of some GCP metadata API attack and defend patterns☆76Updated 4 years ago
- Dependency Combobulator☆89Updated last year
- All checklists☆26Updated 5 years ago
- ☆30Updated 3 years ago
- ☆18Updated 4 years ago
- TSLint rules for Angular☆18Updated 6 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆14Updated 3 years ago
- Scan secrets from Continuous Integration Build Logs☆52Updated 5 years ago
- Slides from presentations I give!☆23Updated 2 months ago
- Interactive IPython Notebook to demonstrate OWASP ZAP's API and Scripting Functions - OWASP ZAP 2.8.0☆41Updated 2 years ago
- A colorful cross-platform python script to test misconfigurations of AWS S3 buckets both through authenticated and unauthenticated checks…☆39Updated 3 years ago
- Pown Proxy is a versatile web application security testing proxy with cool TUI features.☆60Updated 5 years ago
- Repository for all the workshop content delivered at nullcon X on 1st of March 2019☆81Updated 5 years ago
- Detect exposed API keys on GitHub commits.☆34Updated 2 years ago
- Proof-of-concept CORS exploitation tool.☆35Updated 5 years ago
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆106Updated 6 years ago
- All-in-one tool for managing vulnerability reports from AppSec pipelines☆105Updated 2 years ago
- Materials used by Product Management and Product Marketing☆12Updated 6 years ago
- Scripts and tools for AWS Pentest☆51Updated 4 years ago
- Bruteforce a JWT against a list of passwords☆72Updated 7 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆62Updated last year
- OAuth Security Cheatsheet☆39Updated 10 years ago
- Lab Material for the One-Day Web Application Penetration Testing Fundamentals Course☆8Updated 3 years ago