tanprathan / owasp-mstg
The Mobile Security Testing Guide (MSTG) is a manual for testing the security of mobile apps. It describes technical processes for verifying the controls listed in the OWASP Mobile Application Verification Standard (MASVS). The MSTG is meant to provide a baseline set of test cases for black-box and white-box security tests, and to help ensure c…
☆32Updated 8 years ago
Alternatives and similar repositories for owasp-mstg
Users that are interested in owasp-mstg are comparing it to the libraries listed below
Sorting:
- Inspired by https://github.com/djadmin/awesome-bug-bounty, a list of bug bounty write-up that is categorized by the bug nature☆37Updated 7 years ago
- Bash script to automate Bug Bounty Reconnaissance☆38Updated 4 years ago
- ☆59Updated 2 years ago
- Automated reconnaissance wrapper — TomNomNom's meg on steroids.☆31Updated 6 years ago
- "Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.☆39Updated 6 years ago
- List of Google Dorks for sites that have responsible disclosure program / bug bounty program☆21Updated 5 years ago
- ☆36Updated 5 years ago
- Bug Bounty Dork☆71Updated 3 years ago
- Recon_profile☆37Updated 5 years ago
- The Cleveridge Subdomain Scanner finds subdomains of a given domain.☆37Updated 5 years ago
- This repository contains an example Python API that is vulnerable to several different web API attacks.☆27Updated 6 years ago
- Ease-of-use extension for Web Application penetration testing☆22Updated 7 years ago
- A listing of the most common vuln that you can link in your PoCs☆28Updated 6 years ago
- This script is intended to automate your reconnaissance process in an organized fashion☆40Updated 7 years ago
- Now use your favorite Google Dorks techniques to find vulnerabilities and earn Bounties.☆31Updated 4 years ago
- The tools I have programmed to help me with bugbounty's☆115Updated 5 years ago
- Wheres My Git - Find /.git/config files based on dirs found in home url☆20Updated 3 years ago
- SSLScrape | A scanning tool for scaping hostnames from SSL certificates.☆44Updated 6 years ago
- A python script that finds endpoints in JavaScript files☆43Updated 5 years ago
- A Storehouse of resources related to Bug Bounty Hunting collected from different sources. Latest guides, tools, methodology, platforms ti…☆90Updated 3 years ago
- A simple Cherry Tree template that can be used to organize bug bounties☆37Updated 5 years ago
- ☆71Updated 4 years ago
- This repository contains all the material from the talk "Practical recon techniques for bug hunters & pentesters" given at Bugcrowd Level…☆60Updated 6 years ago
- Bug Bounty Recon Script☆18Updated 4 years ago
- Data from my Sunday streams☆75Updated 5 years ago
- ☆30Updated 4 years ago
- Reestructured LemonBooster.☆47Updated 9 months ago
- XSSor is a semi-automatic reflected and persistent XSS detector extension for Burp Suite. The tool was written in Python by Barak Tawily,…☆56Updated 4 years ago
- This repo hosts multiple codes, content, checklists etc which can help a penetration tester in a web application auditing.☆21Updated last year
- Flask powered website to display tweets with a hashtag #bugbountytip☆16Updated 5 years ago