stacscan / stacs
Static Token And Credential Scanner
☆96Updated last year
Alternatives and similar repositories for stacs:
Users that are interested in stacs are comparing it to the libraries listed below
- Simple trick to increase readability of exceptions raised by Burp extensions written in Python☆43Updated 8 years ago
- Quick WAF "paranoid" Doctor Evaluation | WAFPARAN01D3 Tool☆25Updated 3 years ago
- Reference architecture and proof of concept implementation for supply chain security gateway☆23Updated 2 years ago
- ☆38Updated 4 years ago
- My collection of Semgrep rules for vulnerability detection on source code (swift, java)☆34Updated last year
- Burp Extension for AWS Signing☆88Updated 3 months ago
- Mole is a framework for identifying and exploiting out-of-band application vulnerabilities.☆57Updated 4 years ago
- Malicious actors often reuse code to deploy their malware, phishing website or CNC server. As a result, similiaries can be found on URLs …☆75Updated last year
- OAuth 2.0 Dynamic Security Scanner☆33Updated 4 years ago
- A Python-based tool to create zip, tar and cpio archives to exploit common archive library issues and developer mistakes☆43Updated last year
- DupeKeyInjector☆135Updated 3 years ago
- ☆44Updated 3 years ago
- Extensive code infrastructure for finding unintended information leaks in files, git repositories and much more.☆28Updated 2 years ago
- The Web Audit Search Engine - Index and Search HTTP Requests and Responses in Web Application Audits with ElasticSearch☆23Updated 6 years ago
- Network assessment tool for various UDP Services covering both IPv4 and IPv6 protocols☆115Updated 5 years ago
- Endpoint for Out-of-Band Exfiltration (DNS & HTTP)☆92Updated 6 years ago
- CVE.ICU code.☆42Updated this week
- An Evil OIDC Server☆53Updated 2 years ago
- Static code search python lib☆18Updated 4 years ago
- A list of queries and actions that I repeat over and over again☆64Updated 4 years ago
- Oracle Database Penetration Testing Reference (10g/11g)☆36Updated 6 years ago
- An nmap script to produce target lists for use with various tools.☆33Updated 3 years ago
- Manager of third-party sources of Semgrep rules 🗂☆81Updated 9 months ago
- This is a Burpsuite plugin built to enable you to import your directory bruteforcing results into burp for easy viewing later. This is an…☆36Updated 2 years ago
- Scan DockerHub images that match a keyword to find secrets.☆57Updated 4 years ago
- Application and Service Fingerprinting☆133Updated 2 years ago
- A tool to evaluate Content Security Policies.☆71Updated 4 years ago
- Paper, data and code from Investigating Potential Security Vulnerability Manifestation through Various Analyses & Inferences Regarding In…☆19Updated 4 years ago
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆139Updated 3 years ago
- An HTTP Response fuzzer to find Vulnerabilities in Security Scanners☆26Updated 10 months ago