Highlights
Stars
✅ The Node.js best practices list (July 2024)
A list of useful payloads and bypass for Web Application Security and Pentest/CTF
An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.
Set of icons representing programming languages, designing & development tools
Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.
Automagically reverse-engineer REST APIs via capturing traffic
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.
Former GUI client for gRPC services. No longer maintained.
Living Off The Land Binaries And Scripts - (LOLBins and LOLScripts)
Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.
🎨 Beautiful images of your code — from right inside your terminal.
This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-Google owned code.
Next.js-like framework for server-rendered React apps built with React Router
Static checker for GitHub Actions workflow files
RESTler is the first stateful REST API fuzzing tool for automatically testing cloud services through their REST APIs and finding security and reliability bugs in these services.
Extract URLs, paths, secrets, and other interesting bits from JavaScript
Fetch many paths for many hosts - without killing the hosts
Prototype Pollution and useful Script Gadgets
Every Security Engineer Interview Question From Glassdoor.com
Semgrep Community Edition rules, maintained by Semgrep and the community. Free to use under the Semgrep Rules License.
Course content, lab setup instructions and documentation of our very popular Breaking and Pwning Apps and Servers on AWS and Azure hands on training!