An open API service providing repository metadata for many open source software ecosystems.

GitHub topics: webappsec

bl4de/security-tools

My collection of various security tools created mostly in Python and Bash. For CTFs and Bug Bounty.

Language: Python - Size: 35.2 MB - Last synced at: 3 days ago - Pushed at: 13 days ago - Stars: 884 - Forks: 176

OWASP/www-chapter-ottawa

OWASP Foundation Web Respository for the Ottawa Ontario Chapter

Language: HTML - Size: 5.81 MB - Last synced at: 15 days ago - Pushed at: 15 days ago - Stars: 3 - Forks: 9

wille/reporting-api

CSP Reporting Server

Language: TypeScript - Size: 194 KB - Last synced at: 18 days ago - Pushed at: about 1 month ago - Stars: 6 - Forks: 0

OWASP/www-project-vulnerable-web-applications-directory

The OWASP Vulnerable Web Applications Directory Project (VWAD) is a comprehensive and well maintained registry of all known vulnerable web applications currently available.

Language: HTML - Size: 1.25 MB - Last synced at: 22 days ago - Pushed at: 23 days ago - Stars: 47 - Forks: 28

zaproxy/community-scripts

A collection of ZAP scripts and tips provided by the community - pull requests very welcome!

Language: JavaScript - Size: 1.82 MB - Last synced at: 22 days ago - Pushed at: 23 days ago - Stars: 829 - Forks: 243

kingthorin/neonmarker

Continuation of the ZAP Neonmarker add-on previously by Juha Kivekäs

Language: Java - Size: 460 KB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 11 - Forks: 4

devanshbatham/FavFreak

Making Favicon.ico based Recon Great again !

Language: Python - Size: 109 KB - Last synced at: about 1 month ago - Pushed at: almost 2 years ago - Stars: 1,191 - Forks: 174

softrams/bulwark

An organizational asset and vulnerability management tool, with Jira integration, designed for generating application security reports.

Language: TypeScript - Size: 47.9 MB - Last synced at: about 2 months ago - Pushed at: about 2 months ago - Stars: 180 - Forks: 38

AdityaBhatt3010/OWASP-Automated-Threats-to-Web-Applications-OATv2

OWASP Automated Threats (OATv2) concise guide, highlighting real-world exploit methods, attacker motives and associated bug bounty values.

Size: 16.6 KB - Last synced at: 2 months ago - Pushed at: 2 months ago - Stars: 1 - Forks: 0

security-prince/Application-Security-Engineer-Interview-Questions

Some of the questions which i was asked when i was giving interviews for Application/Product Security roles. I am sure this is not an exhaustive list but i felt these questions were important to be asked and some were challenging to answer

Size: 117 KB - Last synced at: 2 months ago - Pushed at: almost 5 years ago - Stars: 668 - Forks: 107

kingthorin/kingthorin

@kingthorin's profile repo

Size: 150 KB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 1 - Forks: 0

approov/web-quickstart-google-recaptcha-v3-javascript

Approov API Threat Protection integration with Google reCAPTCHA V3 for Web Apps

Language: HTML - Size: 1.02 MB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 1 - Forks: 1

approov/web-quickstart-hcaptcha-javascript

Approov API Threat Protection integration with hCaptcha for Web Apps

Language: HTML - Size: 671 KB - Last synced at: 3 months ago - Pushed at: 3 months ago - Stars: 1 - Forks: 0

olacabs/jackhammer

Jackhammer - One Security vulnerability assessment/management tool to solve all the security team problems.

Language: Java - Size: 63.7 MB - Last synced at: 3 months ago - Pushed at: over 1 year ago - Stars: 728 - Forks: 164

thomaspatzke/WASE

The Web Audit Search Engine - Index and Search HTTP Requests and Responses in Web Application Audits with ElasticSearch

Language: Python - Size: 72.3 KB - Last synced at: 3 months ago - Pushed at: over 4 years ago - Stars: 113 - Forks: 46

VainlyStrain/Vaile

Metasploit-like pentest framework derived from TIDoS (https://github.com/0xInfection/TIDoS-Framework)

Language: Python - Size: 19.2 MB - Last synced at: 3 months ago - Pushed at: over 4 years ago - Stars: 65 - Forks: 14

snsttr/diwa

A Deliberately Insecure Web Application

Language: PHP - Size: 2.12 MB - Last synced at: 3 months ago - Pushed at: over 5 years ago - Stars: 67 - Forks: 59

ObsidianStrike/YARF

Yet Another Recon Framework🥷⚔️

Language: Shell - Size: 28.3 KB - Last synced at: 6 months ago - Pushed at: 6 months ago - Stars: 0 - Forks: 0

0xPugal/HackTheWeb

Things to do while Hacking/Hunting in Web Applications

Size: 5.86 KB - Last synced at: 19 days ago - Pushed at: about 1 year ago - Stars: 6 - Forks: 4

umair9747/infosec-arsenal

A curated list of tools which you can use in Infosec!

Size: 32.2 KB - Last synced at: about 1 month ago - Pushed at: over 3 years ago - Stars: 7 - Forks: 2

scriptkkiddie/WebAppSec-Testing

ScriptKKiddie's WebAppSec Testing or Web Application Security Testing based on OWASP is a repository that contains useful resources, & stuffs helpful for Web Application Penetration Testing. By @ScriptKKiddie

Size: 11.7 KB - Last synced at: about 1 year ago - Pushed at: almost 4 years ago - Stars: 14 - Forks: 0

OWASP/www-project-code-review-guide

OWASP Code Review Guide Web Repository

Language: HTML - Size: 1.99 MB - Last synced at: about 1 year ago - Pushed at: about 3 years ago - Stars: 106 - Forks: 20

aashishsec/docks

Enter your domain in the search box to get Docks (Google, Shodan and Github) for bug bounty

Language: HTML - Size: 108 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 1 - Forks: 1

decal/zap-attack

:zap: Conduct attacks based on information gathered from the OWASP ZAP API

Language: Ruby - Size: 75.2 KB - Last synced at: about 1 year ago - Pushed at: about 1 year ago - Stars: 6 - Forks: 0

aashishsec/portProbe

portProbe is a tool designed to efficiently probe for open ports. It will take both IP Address and Subdomains.

Language: Python - Size: 59.6 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 1 - Forks: 0

MartianDefense/WebSec-Lab

Web Applications Security Labs

Language: Shell - Size: 515 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 0 - Forks: 0

ekoparty/ekolabs

EKOLABS esta dedicada para investigadores independientes y para la comunidad del Software Libre. Vamos a proveer de stands completos con monitor, alimentacion de energia y acceso a internet por cable, y vos vas a traer tu maquina para mostrar tu trabajo y responder preguntas de los participantes de Ekoparty Security Conference

Size: 33.2 KB - Last synced at: about 1 year ago - Pushed at: almost 3 years ago - Stars: 51 - Forks: 17

GTekSD/BurpSuitePro-1.7.37-and-2022.8.5-Cracked

Batch file to launch activated BurpSuit in Windows 10/ 11

Language: Clojure - Size: 29.7 MB - Last synced at: almost 2 years ago - Pushed at: almost 2 years ago - Stars: 14 - Forks: 7

Dhamuharker/Xss-

Awesome XSS Payloads

Size: 43.9 KB - Last synced at: over 2 years ago - Pushed at: over 9 years ago - Stars: 68 - Forks: 39

fagci/webmap

Web applications info gatherer

Language: Python - Size: 353 KB - Last synced at: over 2 years ago - Pushed at: almost 4 years ago - Stars: 8 - Forks: 4

stavinski/gowac

Go Web Auth Checker (gowac) can be used to discover URLs that have access control issues

Language: Go - Size: 5.86 KB - Last synced at: 4 months ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

approov/web-quickstart-fingerprintjs-javascript

Approov API Threat protection integration with FingerprintJS for Web Apps

Language: HTML - Size: 1000 KB - Last synced at: 4 months ago - Pushed at: over 1 year ago - Stars: 1 - Forks: 0

APT-410/Resources-for-learning

l

Size: 74.2 KB - Last synced at: 2 months ago - Pushed at: about 3 years ago - Stars: 1 - Forks: 0

decal/cgiaudit

:package: general-purpose, "black box" CGI auditing tool (ARCHIVE)

Language: C - Size: 77.1 KB - Last synced at: about 2 years ago - Pushed at: over 6 years ago - Stars: 4 - Forks: 0

MarcoG3/BruteUploader

Tool designed to find location of newly uploaded file when not given by the website.

Language: Python - Size: 1.95 KB - Last synced at: over 2 years ago - Pushed at: over 6 years ago - Stars: 1 - Forks: 1

HarshilPatel007/webappsec

web application penetration testing and security notes.

Language: Python - Size: 63.5 KB - Last synced at: over 2 years ago - Pushed at: over 3 years ago - Stars: 1 - Forks: 0

Humoud/BurpThenFuzz

Analyzes and fuzzes requests that are stored in Burp Suite's history

Language: C# - Size: 7.81 KB - Last synced at: about 6 hours ago - Pushed at: over 5 years ago - Stars: 6 - Forks: 1

Related Keywords
webappsec 37 pentesting 12 appsec 8 security 8 webappsecurity 7 bugbounty 6 web-security 6 hacking 6 owasp 5 recon 5 security-tools 5 webapp 4 webapp-security 4 reconnaissance 4 osint 4 infosec 4 vulnerability-assessment 3 application-security 3 approov-quickstart 3 approov-integration 3 zaproxy 3 xss 3 bughunting 3 pentest-tool 3 approov 3 approov-web 3 approov-web-quickstart 3 web-api 3 vulnerability 3 python 3 web 3 vulnerability-scanners 3 penetration-testing 3 scanner 2 penetration-testing-tools 2 scanning 2 vulnerability-management 2 websecurity 2 cybersecurity 2 owasp-top-10 2 burpsuite 2 webapppentesting 2 penetration-testing-framework 2 webapps 2 itsecurity 2 express 2 nodejs 2 ctf-tools 2 dast 2 cyber-security 2 hacktoberfest 2 ctf 2 pentest 2 pentesting-tools 2 zap 2 information-gathering 2 web-application-security 2 api-client 1 website-hacking 1 websitehacking 1 codereview 1 guide 1 training 1 pentesting-tool 1 vulnerabilities 1 vulnerability-detection 1 webapplication 1 webapplications 1 bugbountytips 1 hack 1 subdomain-enumeration 1 digitalforensics 1 ethical-hacking 1 forensics 1 information-security 1 infosectools 1 linux 1 programming 1 reversing 1 scriptkkiddie 1 web-app-hacking 1 webapp-pentesting 1 webapphacking 1 autotools 1 cgi-bin 1 dirbuster 1 form-input 1 fuzz-testing 1 hacking-tool 1 html-form 1 html-parsing 1 http-request-test 1 http-server 1 security-audit 1 spiders 1 web-security-research 1 web-penetration-testing 1 webapplicationhacking 1 webapplicationsecurity 1 webpentest 1