wisec / OWASP-Testing-Guide-v5Links
The OWASP Testing Guide includes a "best practice" penetration testing framework which users can implement in their own organizations and a "low level" penetration testing guide that describes techniques for testing most common web application and web service security issues.
☆78Updated 6 years ago
Alternatives and similar repositories for OWASP-Testing-Guide-v5
Users that are interested in OWASP-Testing-Guide-v5 are comparing it to the libraries listed below
Sorting:
- ☆72Updated 5 years ago
- This lab is created to demonstrate pass-the-hash, blind sql and SSTI vulnerabilities☆93Updated 2 years ago
- BurpSuite using the document and some extensions☆72Updated 5 years ago
- Vulnerable SAML infrastructure training applicaiton☆54Updated 3 years ago
- Enhanced fork with logging, OpenAPI 3.0 and Python 3 for security monitoring workshops☆44Updated last year
- ☆17Updated 4 years ago
- ☆17Updated 3 years ago
- A blazing fast & feature rich Amazon S3 bucket enumerator.☆99Updated 3 years ago
- API Pentesting notes.☆96Updated last year
- Template used for my OSCP exam.☆29Updated 3 years ago
- A burpsuite extension that helps security researchers find public security reports published on h1 based on the selected host☆42Updated 5 years ago
- s3 brute force tool☆44Updated 4 years ago
- OWASP practice lab, just a few copy/pastes away. Fully stacked and ready to go with Docker☆21Updated 7 years ago
- ☆76Updated 5 years ago
- ☆84Updated 2 years ago
- HTTP parameter discovery suite.☆65Updated 5 years ago
- m0chan.github.io☆88Updated 4 months ago
- A very vulnerable implementation of a GraphQL API.☆61Updated 4 years ago
- Tarpit - A Web application seeded with vulnerabilities, rootkits, backdoors & data leaks☆82Updated 3 years ago
- Detectify Crowdsource Challenge☆72Updated 3 years ago
- Workshop given at Hack in Paris 2019☆126Updated 2 years ago
- GraphQL security workshop labs☆118Updated this week
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆132Updated 3 years ago
- ASN reconnaissance script☆131Updated 2 years ago
- A combined wordlists for files and directory discovery☆127Updated 4 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆76Updated 3 years ago
- This repository contains an example Python API that is vulnerable to several different web API attacks.☆70Updated last year
- Advanced Reconnaissance and Web Application Discovery☆89Updated 4 years ago
- A python based blind SQL injection exploitation script☆142Updated 6 years ago
- Find subdomains and takeovers.☆87Updated 3 years ago