zaproxy / community-scripts
A collection of ZAP scripts and tips provided by the community - pull requests very welcome!
☆818Updated this week
Alternatives and similar repositories for community-scripts:
Users that are interested in community-scripts are comparing it to the libraries listed below
- ZAP Add-ons☆862Updated this week
- This repo is no longer in use. Please refer to https://github.com/OWASP/www-project-vulnerable-web-applications-directory☆879Updated 5 months ago
- Web and mobile application security training platform☆1,371Updated 8 months ago
- Application Security Automation☆529Updated last year
- A simple tool for interacting with OWASP ZAP from the commandline.☆233Updated last year
- Security Knowledge Framework (SKF) Python Flask / Angular project☆818Updated last year
- REST/JSON API to the Burp Suite security tool.☆555Updated 10 months ago
- The Secure Coding Framework☆269Updated 4 years ago
- The ZAP Heads Up Display (HUD)☆259Updated last month
- Fuzzapi is a tool used for REST API pentesting and uses API_Fuzzer gem☆651Updated 4 years ago
- ZAP Python API☆189Updated last week
- Offensive Web Testing Framework (OWTF), is a framework which tries to unite great tools and make pen testing more efficient http://owtf.o…☆1,846Updated 2 weeks ago
- Imperva's customizable API attack tool takes an API specification as an input, generates and runs attacks that are based on it as an outp…☆470Updated last year
- Automatically exported from code.google.com/p/domxsswiki☆525Updated 6 years ago
- Setup script for Regon-ng☆926Updated 4 years ago
- Damn Vulnerable Web Services is an insecure web application with multiple vulnerable web service components that can be used to learn rea…☆455Updated 3 years ago
- grep rough audit - source code auditing tool☆1,595Updated 3 months ago
- A tool to capture all the git secrets by leveraging multiple open source git searching tools☆1,127Updated 5 years ago
- Security Mindmap that could be useful for the infosec community when doing pentest, bug bounty or red-team assessments.☆734Updated 2 years ago
- SAMM stands for Software Assurance Maturity Model.☆398Updated 2 years ago
- Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Applica…☆481Updated 6 years ago
- Automated security reporting from markdown templates (HackerOne and Bugcrowd are currently the platforms supported)☆452Updated 5 years ago
- This project is about creating and publishing threat model examples.☆419Updated 3 years ago
- A curated list of vulnerable web applications.☆289Updated last year
- GoLismero - The Web Knife☆873Updated 4 years ago
- A virtual host scanner that performs reverse lookups, can be used with pivot tools, detect catch-all scenarios, work around wildcards, al…☆1,223Updated last year
- Security Champions Playbook v 2.1☆360Updated last year
- Content discovery wordlists generated using BigQuery☆565Updated 4 years ago
- ☆463Updated 4 years ago
- Exploitation for XSS☆712Updated 3 years ago