synack / wstgLinks
The Web Security Testing Guide is a comprehensive open source guide to testing the security of web applications and web services.
☆29Updated 2 years ago
Alternatives and similar repositories for wstg
Users that are interested in wstg are comparing it to the libraries listed below
Sorting:
- The project aims at creating target-specific wordlists for any web application that you are testing.☆66Updated 3 years ago
- ☆61Updated 11 months ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆132Updated 4 years ago
- ☆67Updated 2 years ago
- A reverse whois tool based on Whoxy API.☆166Updated last year
- A blazing fast & feature rich Amazon S3 bucket enumerator.☆98Updated 2 years ago
- Detectify Crowdsource Challenge☆69Updated 3 years ago
- List of fresh DNS resolvers updated daily☆108Updated 2 years ago
- Small tool to automate SSRF wordpress and XMLRPC finder☆81Updated 2 years ago
- Prototype Pollution Scanner☆121Updated 4 years ago
- A script for installing private Burp Collaborator with free Let's Encrypt SSL-certificate☆210Updated last year
- A collection of code for interacting with API sources directly to improve your understanding of those services.☆65Updated 4 years ago
- ☆38Updated 5 months ago
- A quick ‘n dirty nmap parser written in Golang to convert nmap xml to IP:Port notation.☆128Updated last year
- xss development frameworks, with the goal of making payload writing easier.☆143Updated 11 months ago
- Dotmil subdomain discovery tool that scrapes domains from official DoD website directories and certificate transparency logs☆96Updated 4 years ago
- Reestructured LemonBooster.☆47Updated 11 months ago
- Vulnerable SAML infrastructure training applicaiton☆53Updated 2 years ago
- golang tool to scan domains or single domains with know security issues against xmlrpc☆62Updated last year
- Horizontal Domain Discovery☆76Updated 2 years ago
- Clientside vulnerability / reflected xss fuzzer☆150Updated last year
- Burp Extension for easily creating Wordlists☆211Updated 3 years ago
- Find subdomains and takeovers.☆85Updated 2 years ago
- Check AWS S3 instances for read/write/delete access☆121Updated 3 years ago
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆79Updated last year
- A collection of useful grep patterns and tools by Tomnomnom for extracting specific values from text.☆45Updated 3 months ago
- Extract JavaScript files from burp suite project with ease.☆90Updated 3 years ago
- A blind XSS detection and XSS data capture framework☆171Updated last week
- s3 brute force tool☆44Updated 4 years ago
- A Python Library designed to facilitate interaction with Synack's undocumented API endpoints☆26Updated 4 months ago