Highlights
- Pro
-
-
burp-paramalyzer Public
Paramalyzer - Burp extension for parameter analysis of large-scale web application penetration tests.
-
SES-forwarder Public
A Lambda-based solution for forwarding emails received by Amazon SES to verified email addresses.
-
-
burp-co2 Public
A collection of enhancements for Portswigger's popular Burp Suite web penetration testing tool.
-
MessageReviewer Public
Python script for generating an HTML viewer for a folder of .msg files.
-
Samurai-Dojo Public
Forked from meeas/Samurai-DojoPart of the SamuraiWTF project, this is a set of simple vulnerable web apps used primarily for instruction during web penetration testing classes.
-
rms-open-letter.github.io Public
Forked from rms-open-letter/rms-open-letter.github.ioShell UpdatedMar 25, 2021 -
json-web-tokens Public
Forked from PortSwigger/json-web-tokensJWT Support for Burp
Java GNU General Public License v3.0 UpdatedJun 30, 2020 -
wstg Public
Forked from OWASP/wstgThe Web Security Testing Guide is a comprehensive open source guide to testing the security of web applications and web services.
-
GTFOBins.github.io Public
Forked from GTFOBins/GTFOBins.github.ioCurated list of Unix binaries that can be exploited to bypass system security restrictions
HTML UpdatedDec 22, 2019 -
Mobile-Security-Framework-MobSF Public
Forked from MobSF/Mobile-Security-Framework-MobSFMobile Security Framework is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing framework capable of performing static analysis, dynamic analysis, malware analysis and we…
-
openvpn-cfn Public
Forked from ScriptAutomate/openvpn-cfnRoll your own Amazon Linux 2 OpenVPN with AWS CloudFormation (w/ Dynamically Discovered Latest AMI Id via Parameter Store)
MIT License UpdatedNov 10, 2019 -
SmartThingsPublic Public
Forked from SmartThingsCommunity/SmartThingsPublicSmartThings open-source DeviceTypeHandlers and SmartApps code
-
-
-
gitpitch Public
Forked from gitpitch/gitpitchMarkdown Presentations For Everyone on GitHub, GitLab, Bitbucket, GitBucket, Gitea, and Gogs.
Java MIT License UpdatedMar 30, 2018 -
openflagserver Public
OpenFlagSever is a simple scoring server intended for use in security CTF (capture the flag) competitions.
-
-
Wappalyzer Public
Forked from juliopontes/WappalyzerCross-platform utility that uncovers the technologies used on websites.
-
burp-bs Public
An extension for Burp Suite which provides integration with the Java BeanShell interpreter.
-
-
loubia Public
Forked from metalnas/loubiaPython script to exploit java unserialize on t3 (Weblogic)
-
Laudanum2 Public
Web post-exploitation payloads for penetration testing.
-
burp-oauther Public
based on burp-oauth (https://github.com/dnet/burp-oauth), this version of the tool has a configuration screen and does not require recompiling whenever keys, tokens, secrets are changed.
-
ntlm-mimic Public
A project to generate login forms that mimic a web NTLM prompt.
-
WASR Public
WASR - Web App Security Report, is a template-driven tool for generating security assessment reports. The tool organizes information in a tree-like structure. NOTE: The current iteration of this pr…