wahengchang / nodejs-security-must-know
It is a note about security on nodejs
☆48Updated 6 years ago
Related projects ⓘ
Alternatives and complementary repositories for nodejs-security-must-know
- DirBuster for Node.js☆19Updated 5 years ago
- An extensible, heuristic-based vulnerability scanning tool for installed npm packages☆50Updated 3 years ago
- Documentation for Essential Node.js Security☆95Updated last year
- Some thoughts on how Node.js might respond to a changing security environment☆172Updated 5 years ago
- Vulnerabilities discovered in npm packages [Berkeley PL & Security Research]☆42Updated 4 months ago
- jPurify☆65Updated 7 years ago
- An experimental distributed JWT token cracker built using Node.js and ZeroMQ☆53Updated 2 months ago
- Scan secrets from Continuous Integration Build Logs☆52Updated 5 years ago
- A Collection of articles, videos, blogs, talks and other materials on Node.js Security☆26Updated 5 years ago
- Security advisories for Node.js and the JavaScript ecosystem.☆41Updated 3 years ago
- Nodejs application intentionally vulnerable to SSRF☆41Updated last year
- npm package for express applications☆17Updated 3 years ago
- ☆61Updated 7 years ago
- Day to day relevant info about Operational Security for Nodejs projects☆8Updated 4 years ago
- A comprehensive tutorial on cross-site scripting☆89Updated 7 years ago
- XXRF Shots - Useful for testing SSRF vulnerability☆74Updated last year
- ☆39Updated last year
- A Reflected / Stored / DOM XSS Scanner based on Headless Chrome Node API via Puppeteer☆39Updated last year
- NodeXP - A Server Side Javascript Injection tool capable of detecting and exploiting Node.js vulnerabilities☆105Updated 4 years ago
- Code repository for Mastering Modern Web Penetration Testing, published by Packt☆73Updated last year
- A JavaScript clickjacking PoC generator☆22Updated 5 years ago
- umbrella config to achieve scanjs-like functionality through eslint☆88Updated 3 years ago
- An ultra-compact intro (or refresher) to Web Application Security.☆31Updated 6 years ago
- Static analysis tool for javascript code based. Scanjs uses Esprima to convert sources to AST, then walks AST looking for patterns.☆54Updated 10 years ago
- An XSS smoke test for ReactJS☆37Updated last year
- Discussion area for security aspects of ECMAScript☆64Updated 6 years ago
- A dashboard for interesting DOM tricks/techniques.☆36Updated 3 years ago
- The OWASP AppSec Browser Bundle is an open source Linux based penetration testing browser bundle built over Mozilla Firefox. It comes pre…☆93Updated 10 years ago
- XSS in pastebin.com and reddit.com via unsanitized markdown output☆87Updated 6 years ago