Lists (32)
Sort Name ascending (A-Z)
All in One
Android Pentesting
API Pentesting
Awesome Hacking
Black Friday Deals
Bug Bounty Reports
Bug Bounty Tools
Burp Extenders
Burp Extensions
Cloud Security (Azure)
Devops resources
Devsecops
🔮 Future ideas
Interview questions
IOS Pentesting
Mobile Pentesting
Node Security
Nuclei
Open Source API Tools
Open Source Web PT Tools
OSCE Preparation
OSWE
Pentest Guide
Pentesting Cheat Sheets
Red Teaming
Red Teaming checklists
Reports
Source Code Review
Telegram Groups
Vulnerable Web Applications
Web App Security
For Self LearningWeb Services
Starred repositories
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static a…
Runtime Mobile Security (RMS) 📱🔥 - is a powerful web interface that helps you to manipulate Android and iOS Apps at Runtime
Damn Vulnerable GraphQL Application is an intentionally vulnerable GraphQL service implementation designed for learning about and practising GraphQL Security.
BurpSuite using the document and some extensions
A collection of ZAP scripts and tips provided by the community - pull requests very welcome!
Declination of @matcornic Learn theme to Hugo
Damn Vulnerable Web Services is a vulnerable application with a web service and an API that can be used to learn about webservices/API related vulnerabilities.
Work in progress...
GCPGoat : A Damn Vulnerable GCP Infrastructure
Collection of penetration test reports and pentest report templates. Published by the the best security companies in the world.
A tool geared towards pentesting APIs using OpenAPI definitions.
Presentations, training modules, and other education materials from Duo Security's Application Security team.
Very Vulnerable Management API (VVMA) is a deliberately insecure RESTful API built with Node.js for educational and testing purposes. It includes vulnerabilities from the OWASP Top 10 API, allowing…
AWS-Devops-Projects / Building-CI-CD-pipeline-for-Serverless-Application
Forked from AditModi/Building-CI-CD-pipeline-for-Serverless-ApplicationTodoapp is a simple Web Application designed to use AWS for CI/CD Pipeline Functionality using AWS CodePipeline, it also does UI testing using Ghost Inspector with the help of CodePipeline build st…
This is a vulnerable application written is python to demonstrate a blind XSS scenario