tkisason / vulnapi
Intentionaly very vulnerable API with bonus bad coding practices
☆41Updated last year
Alternatives and similar repositories for vulnapi:
Users that are interested in vulnapi are comparing it to the libraries listed below
- Target practice for ffuf☆61Updated 3 years ago
- ☆52Updated 2 years ago
- DNS resolution tracing tool☆34Updated 3 years ago
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆79Updated last year
- A list of threat sinks used in the manual security source code review for application security☆70Updated last year
- HTTP parameter discovery suite.☆61Updated 4 years ago
- HTTP verb tampering & methods enumeration☆56Updated 2 years ago
- Create your own recon & vulnerability scanner with Trickest and GitHub☆49Updated last year
- 🔭 Collection of regexp pattern for security passive scanning☆115Updated 2 years ago
- Checks whether a domain is hosted on a cloud service such as AWS, Azure or CloudFlare☆58Updated 2 years ago
- ☆22Updated 4 years ago
- A simple automation tool to detect lfi, rce and ssti vulnerability☆55Updated 3 years ago
- Find alive host from dumped subdomains, huge domain list , alive subdomains☆27Updated 3 years ago
- Some contributions in the nuclei-templates repository☆57Updated 2 years ago
- A custom built DNS bruteforcer with multi-threading, and handling of bad resolvers.☆57Updated 2 years ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆28Updated last year
- swagroutes is a command-line tool that extracts and lists API routes from Swagger files in YAML or JSON format.☆56Updated last year
- A Burp Suite Extension for pentester and bug bounty hunters an to maintain checklist, map flows, write test cases and track vulnerabiliti…☆113Updated last year
- Template used for my OSCP exam.☆27Updated 2 years ago
- The scripts I write to help me on my bug bounty hunting☆121Updated 3 years ago
- CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to …☆123Updated 10 months ago
- Checks if files is accessible based on the source code.☆16Updated 11 months ago
- This small script can download or update all the GitHub repo of your choice.☆21Updated 10 months ago
- Striping CDN IPs from a list of IP Addresses☆75Updated 2 years ago
- This is vulnerable microservice written in many language to demonstrating OWASP API Top Security Risk (under development)☆43Updated 2 years ago
- REST API backend for Reconmap☆46Updated this week
- part of my wordlist to bruteforce DNS to find subdoamains.☆62Updated 3 years ago
- ☆53Updated 9 months ago
- Small tool to automate SSRF wordpress and XMLRPC finder☆80Updated 2 years ago
- Automated Web Recon Shell Scripts☆51Updated 3 years ago