vwt-digital / openapi3-fuzzerLinks
Simple fuzzer for OpenAPI 3 specification based APIs
☆22Updated 2 years ago
Alternatives and similar repositories for openapi3-fuzzer
Users that are interested in openapi3-fuzzer are comparing it to the libraries listed below
Sorting:
- Fuzz test your application using your OpenAPI or Swagger API definition without coding☆459Updated 7 months ago
- Automated API security testing☆88Updated last year
- A pytest-inspired, DAST framework, capable of identifying vulnerabilities in a distributed, micro-service ecosystem through chaos enginee…☆227Updated last year
- OpenAPI 2.0 (Swagger) fuzzer written in python. Basically TnT for your API.☆111Updated 2 years ago
- CVSS2/3/4 library with interactive calculator for Python 2 and Python 3☆108Updated 2 months ago
- Manager of third-party sources of Semgrep rules 🗂☆89Updated last year
- Python Faker provider for security related data☆40Updated last month
- GitHub action to generate a CycloneDX SBOM for Python☆14Updated 9 months ago
- Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.1, purl, and vers…☆128Updated 2 months ago
- Audit python packages for known vulnerabilities☆33Updated 3 years ago
- Software Bill-of-Materials documents for Python packages☆42Updated 7 months ago
- Semgrep extension for Visual Studio Code☆68Updated this week
- A GitHub Action for pip-audit☆75Updated 2 weeks ago
- ☆27Updated 3 years ago
- 🔍A cutting edge context aware GraphQL API fuzzing tool!☆151Updated last month
- Find which of your direct GitHub dependencies is susceptible to RepoJacking attacks☆59Updated 3 years ago
- software asset scanning orchestration system☆28Updated last week
- Advisory database for Python packages published on pypi.org☆306Updated this week
- Vulnogram is a tool for creating and editing CVE information in CVE JSON format☆203Updated this week
- Improve the security of your API by detecting common vulnerabilities as defined by OWASP and enforced with Spectral.☆78Updated 11 months ago
- This project is deprecated. Use https://github.com/returntocorp/semgrep instead☆74Updated last year
- Prepackaged and precompiled github codeql container for rapid analysis, deployment and development.☆119Updated last year
- ☆202Updated 11 months ago
- A framework for understanding the capabilities of automated detection methods at identifying classes of application security vulnerabilit…☆32Updated last week
- Example repository for GitHub Actions Time of Check to Time of Use (TOCTOU vulnerabilities)☆31Updated 5 months ago
- DustiLock is a tool to find which of your dependencies is susceptible to a Dependency Confusion attack.☆40Updated 3 years ago
- A set of Python command line tools for working with SARIF files produced by code analysis tools☆128Updated last month
- boostsecurityio/lotp☆136Updated this week
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagrams☆106Updated 8 months ago
- A library for building tools to determine if vulnerabilities are reachable in a code base.☆16Updated 2 months ago