synack / owasp-mstgLinks
The Mobile Security Testing Guide (MSTG) is a comprehensive manual for mobile app security development, testing and reverse engineering.
☆11Updated 5 years ago
Alternatives and similar repositories for owasp-mstg
Users that are interested in owasp-mstg are comparing it to the libraries listed below
Sorting:
- Tool for making it easy to collect dns results from the CLI☆40Updated last year
- Script to test open Akamai ARL vulnerability.☆70Updated 4 years ago
- A simple Swagger-ui scanner that can detect old versions vulnerable to various XSS attacks☆60Updated 6 years ago
- Custom scripts for the PIPER Burp extensions.☆98Updated 2 years ago
- a tool that compiles a csv of all h1 program stats☆49Updated 2 years ago
- Get all the CNs from a list of domains☆45Updated 4 years ago
- The Web Security Testing Guide is a comprehensive open source guide to testing the security of web applications and web services.☆31Updated 3 months ago
- ☆66Updated 3 years ago
- ☆43Updated 6 months ago
- Misc bounty and vulndisc things☆85Updated 5 years ago
- ☆19Updated 2 years ago
- WILSON Cloud Respwnder is a Web Interaction Logger Sending Out Notifications with the ability to serve custom content in order to appropr…☆50Updated last year
- Some contributions in the nuclei-templates repository☆62Updated 3 years ago
- A collection of code for interacting with API sources directly to improve your understanding of those services.☆66Updated 5 years ago
- ☆60Updated last year
- Horizontal Domain Discovery☆77Updated 2 years ago
- A Burp Suite Extension for parsing Project Files from the CLI.☆89Updated 3 weeks ago
- Sometimes we want to fuzz a set of sub-domain URLs with a common wordlist. Fuzzing them one by one is a tedious task, not to mention the …☆52Updated 4 years ago
- ☆34Updated 4 years ago
- ☆11Updated 5 years ago
- ☆38Updated 5 years ago
- ☆61Updated last year
- Clientside vulnerability / reflected xss fuzzer☆149Updated 2 years ago
- This repository is intended for sharing files/tools/tutorials..etc that related to eWPTXv1 from eLearnSecurity☆23Updated 5 years ago
- A simple Bash one liner with aim to automate CRLF vulnerability scanning.☆69Updated 5 years ago
- Takeover subdomains using AWS dangling elastic ips and have a working POC for Subdomain Takeover.☆93Updated 6 months ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆132Updated 4 years ago
- s3 brute force tool☆44Updated 4 years ago
- Basic implementation of certstream to print new subdomains and domains☆36Updated 4 years ago
- Simple tool to test for SSRF/OOB HTTP Read within the Path of a request☆30Updated 6 years ago