All Projects → awesome-api-security → Similar Projects or Alternatives

800 Open source projects that are alternatives of or similar to awesome-api-security

NIST-to-Tech
An open-source listing of cybersecurity technology mapped to the NIST Cybersecurity Framework (CSF)
Stars: ✭ 61 (-97.07%)
Mutual labels:  infosec, pentest
Gosint
OSINT Swiss Army Knife
Stars: ✭ 401 (-80.71%)
Mutual labels:  infosec, pentest
Getaltname
Extract subdomains from SSL certificates in HTTPS sites.
Stars: ✭ 320 (-84.61%)
Mutual labels:  infosec, pentest
ronin-support
A support library for Ronin. Like activesupport, but for hacking!
Stars: ✭ 23 (-98.89%)
Mutual labels:  fuzzing, infosec
Defaultcreds Cheat Sheet
One place for all the default credentials to assist the Blue/Red teamers activities on finding devices with default password 🛡️
Stars: ✭ 1,949 (-6.25%)
Mutual labels:  infosec, pentest
sx
🖖 Fast, modern, easy-to-use network scanner
Stars: ✭ 1,267 (-39.06%)
Mutual labels:  infosec, pentest
Berserker
A list of useful payloads for Web Application Security and Pentest/CTF
Stars: ✭ 212 (-89.8%)
Mutual labels:  fuzzing, pentest
pentest-notes
渗透测试☞经验/思路/总结/想法/笔记
Stars: ✭ 734 (-64.69%)
Mutual labels:  infosec, pentest
Snoop
Snoop — инструмент разведки на основе открытых данных (OSINT world)
Stars: ✭ 886 (-57.38%)
Mutual labels:  infosec, pentest
Wsmanager
Webshell Manager
Stars: ✭ 99 (-95.24%)
Mutual labels:  infosec, pentest
Rfd Checker
RFD Checker - security CLI tool to test Reflected File Download issues
Stars: ✭ 56 (-97.31%)
Mutual labels:  infosec, pentest
Pentesterspecialdict
渗透测试人员专用精简化字典 Dictionary for penetration testers happy hacker
Stars: ✭ 391 (-81.19%)
Mutual labels:  fuzzing, pentest
Hacker Container
Container with all the list of useful tools/commands while hacking and pentesting Kubernetes Clusters
Stars: ✭ 105 (-94.95%)
Mutual labels:  infosec, pentest
HolyTips
A Collection of Notes, Checklists, Writeups on Bug Bounty Hunting and Web Application Security.
Stars: ✭ 1,210 (-41.8%)
Mutual labels:  pentest, api-security
Docker Security Images
🔐 Docker Container for Penetration Testing & Security
Stars: ✭ 172 (-91.73%)
Mutual labels:  infosec, pentest
1earn
ffffffff0x 团队维护的安全知识框架,内容包括不仅限于 web安全、工控安全、取证、应急、蓝队设施部署、后渗透、Linux安全、各类靶机writup
Stars: ✭ 3,715 (+78.69%)
Mutual labels:  infosec, pentest
volana
🌒 Shell command obfuscation to avoid detection systems
Stars: ✭ 38 (-98.17%)
Mutual labels:  infosec, pentest
Dorknet
Selenium powered Python script to automate searching for vulnerable web apps.
Stars: ✭ 256 (-87.69%)
Mutual labels:  infosec, pentest
PyParser-CVE
Multi source CVE/exploit parser.
Stars: ✭ 25 (-98.8%)
Mutual labels:  infosec, pentest
Chashell
Chashell is a Go reverse shell that communicates over DNS. It can be used to bypass firewalls or tightly restricted networks.
Stars: ✭ 742 (-64.31%)
Mutual labels:  infosec, pentest
Dumpsterfire
"Security Incidents In A Box!" A modular, menu-driven, cross-platform tool for building customized, time-delayed, distributed security events. Easily create custom event chains for Blue- & Red Team drills and sensor / alert mapping. Red Teams can create decoy incidents, distractions, and lures to support and scale their operations. Build event sequences ("narratives") to simulate realistic scenarios and generate corresponding network and filesystem artifacts.
Stars: ✭ 775 (-62.72%)
Mutual labels:  infosec, pentest
Awesome Nodejs Security
Awesome Node.js Security resources
Stars: ✭ 1,294 (-37.76%)
Mutual labels:  infosec, pentest
31 Days Of Api Security Tips
This challenge is Inon Shkedy's 31 days API Security Tips.
Stars: ✭ 1,038 (-50.07%)
Mutual labels:  infosec, pentest
leaky-paths
A collection of special paths linked to major web CVEs, known misconfigurations, juicy APIs ..etc. It could be used as a part of web content discovery, to scan passively for high-quality endpoints and quick-wins.
Stars: ✭ 507 (-75.61%)
Mutual labels:  fuzzing, pentest
Wordlists
Infosec Wordlists
Stars: ✭ 271 (-86.96%)
Mutual labels:  fuzzing, infosec
Cloakify
CloakifyFactory - Data Exfiltration & Infiltration In Plain Sight; Convert any filetype into list of everyday strings, using Text-Based Steganography; Evade DLP/MLS Devices, Defeat Data Whitelisting Controls, Social Engineering of Analysts, Evade AV Detection
Stars: ✭ 1,136 (-45.36%)
Mutual labels:  infosec, pentest
Dirsearch
Web path scanner
Stars: ✭ 7,246 (+248.53%)
Mutual labels:  fuzzing, infosec
Ios
Most usable tools for iOS penetration testing
Stars: ✭ 563 (-72.92%)
Mutual labels:  infosec, pentest
Hershell
Hershell is a simple TCP reverse shell written in Go.
Stars: ✭ 442 (-78.74%)
Mutual labels:  infosec, pentest
Vuldash
Vulnerability Dashboard
Stars: ✭ 16 (-99.23%)
Mutual labels:  infosec, pentest
Asnlookup
Leverage ASN to look up IP addresses (IPv4 & IPv6) owned by a specific organization for reconnaissance purposes, then run port scanning on it.
Stars: ✭ 163 (-92.16%)
Mutual labels:  infosec, pentest
Winappdbg
WinAppDbg Debugger
Stars: ✭ 338 (-83.74%)
Mutual labels:  fuzzing, infosec
tugarecon
Pentest: Subdomains enumeration tool for penetration testers.
Stars: ✭ 142 (-93.17%)
Mutual labels:  infosec, pentest
Spiderfoot
SpiderFoot automates OSINT for threat intelligence and mapping your attack surface.
Stars: ✭ 6,882 (+231.02%)
Mutual labels:  infosec, pentest
haiti
🔑 Hash type identifier (CLI & lib)
Stars: ✭ 287 (-86.2%)
Mutual labels:  infosec, pentest
rejig
Turn your VPS into an attack box
Stars: ✭ 33 (-98.41%)
Mutual labels:  infosec, pentest
juumla
🦁 Juumla is a python tool created to identify Joomla version, scan for vulnerabilities and search for config or backup files.
Stars: ✭ 107 (-94.85%)
Mutual labels:  infosec, pentest
flydns
Related subdomains finder
Stars: ✭ 29 (-98.61%)
Mutual labels:  infosec, pentest
aquatone
A Tool for Domain Flyovers
Stars: ✭ 43 (-97.93%)
Mutual labels:  infosec, pentest
Pentesting
Misc. Public Reports of Penetration Testing and Security Audits.
Stars: ✭ 24 (-98.85%)
Mutual labels:  infosec, pentest
Awesome Infosec
A curated list of awesome infosec courses and training resources.
Stars: ✭ 3,779 (+81.77%)
Mutual labels:  infosec, pentest
Awesome Security Gists
A collection of various GitHub gists for hackers, pentesters and security researchers
Stars: ✭ 701 (-66.28%)
Mutual labels:  infosec, pentest
Pwndoc
Pentest Report Generator
Stars: ✭ 417 (-79.94%)
Mutual labels:  infosec, pentest
Offensive Dockerfiles
Offensive tools as Dockerfiles. Lightweight & Ready to go
Stars: ✭ 150 (-92.78%)
Mutual labels:  infosec, pentest
Dictionary Of Pentesting
Dictionary collection project such as Pentesing, Fuzzing, Bruteforce and BugBounty. 渗透测试、SRC漏洞挖掘、爆破、Fuzzing等字典收集项目。
Stars: ✭ 492 (-76.33%)
Mutual labels:  fuzzing, pentest
Reconftw
reconFTW is a tool designed to perform automated recon on a target domain by running the best set of tools to perform scanning and finding out vulnerabilities
Stars: ✭ 974 (-53.15%)
Mutual labels:  fuzzing, pentest
Pythonfuzz
coverage guided fuzz testing for python
Stars: ✭ 175 (-91.58%)
Mutual labels:  fuzzing
Fuzzit
CLI to integrate continuous fuzzing with Fuzzit
Stars: ✭ 220 (-89.42%)
Mutual labels:  fuzzing
Raccoon
A high performance offensive security tool for reconnaissance and vulnerability scanning
Stars: ✭ 2,312 (+11.21%)
Mutual labels:  fuzzing
Kleefl
Seeding fuzzers with symbolic execution
Stars: ✭ 172 (-91.73%)
Mutual labels:  fuzzing
Fuzzcheck Rs
Structure-aware, in-process, coverage-guided, evolutionary fuzzing engine for Rust functions.
Stars: ✭ 247 (-88.12%)
Mutual labels:  fuzzing
Uafuzz
UAFuzz: Binary-level Directed Fuzzing for Use-After-Free Vulnerabilities
Stars: ✭ 217 (-89.56%)
Mutual labels:  fuzzing
Fuzzfactory
Domain-Specific Fuzzing with Waypoints
Stars: ✭ 167 (-91.97%)
Mutual labels:  fuzzing
Morph
An open source fuzzing framework for fun.
Stars: ✭ 166 (-92.02%)
Mutual labels:  fuzzing
Jfs
Constraint solver based on coverage-guided fuzzing
Stars: ✭ 215 (-89.66%)
Mutual labels:  fuzzing
Fuzzinator
Fuzzinator Random Testing Framework
Stars: ✭ 164 (-92.11%)
Mutual labels:  fuzzing
Grammarinator
ANTLR v4 grammar-based test generator
Stars: ✭ 162 (-92.21%)
Mutual labels:  fuzzing
MyJWT
A cli for cracking, testing vulnerabilities on Json Web Token(JWT)
Stars: ✭ 92 (-95.57%)
Mutual labels:  pentest
Qasan
QASan is a custom QEMU 3.1.1 that detects memory errors in the guest using AddressSanitizer.
Stars: ✭ 246 (-88.17%)
Mutual labels:  fuzzing
Rapid
Rapid is a Go library for property-based testing that supports state machine ("stateful" or "model-based") testing and fully automatic test case minimization ("shrinking")
Stars: ✭ 213 (-89.75%)
Mutual labels:  fuzzing
1-60 of 800 similar projects