yevh / VulnPlanet
Vulnerable code snippets with fixes for Web2, Web3, API, iOS, Android and Infrastructure-as-Code (IaC)
☆159Updated 7 months ago
Alternatives and similar repositories for VulnPlanet:
Users that are interested in VulnPlanet are comparing it to the libraries listed below
- This repo contains the code for my secure code review challenges☆108Updated 3 weeks ago
- An OSWE Guide☆115Updated 4 years ago
- ☆80Updated last year
- ☆37Updated 4 years ago
- Web Application Security Testing Tools☆241Updated last year
- A list of edge cases that occur in bug bounty programs, conversations on how they should be handled. The goal is to standardise the way t…☆229Updated 3 years ago
- Awesome information for WebSockets security research☆264Updated 3 years ago
- A OWASP Based Checklist With 80+ Test Cases☆141Updated 2 years ago
- Collection's of Tech Talk that are presented by me :)☆96Updated 2 months ago
- Smart context-based SSRF vulnerability scanner.☆349Updated 2 years ago
- ☆100Updated last year
- FlowMate, a BurpSuite extension that brings taint analysis to web applications, by tracking all parameters send to a target application a…☆156Updated 4 months ago
- Find authentication (authn) and authorization (authz) security bugs in web application routes.☆258Updated 2 weeks ago
- ☆130Updated 4 years ago
- ☆168Updated last month
- ☆76Updated last year
- Detailed information about API key / OAuth token (Description, Request, Response, Regex, Example)☆271Updated last year
- ☆118Updated 4 years ago
- Real world bug bounty wordlists☆110Updated last year
- A tool to quickly do keyword searches over Gitlab and Github for OSINT & bug bounty recon☆234Updated last year
- WhereToGo - is a list of popular services that might be used in organizations. By having an account of the user - you can try to find ent…☆121Updated 2 years ago
- A curated list of cloud pentesting resource, contains AWS, Azure, Google Cloud☆116Updated 2 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆265Updated 2 years ago
- Top disclosed reports from HackerOne☆151Updated 3 years ago
- Docker toolbox for pentest of web based application.☆148Updated last week
- Path Traversal Vulnerability Payload List☆64Updated 2 years ago
- CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).☆108Updated 2 months ago
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.☆191Updated 7 months ago
- ☆85Updated 2 years ago
- Source Code Review resources for Bug Bounty Hunters & Developers. This Repo is updated consistently.☆65Updated 3 years ago