An open API service providing repository metadata for many open source software ecosystems.

Topic: "broken-access-control"

dub-flow/sessionprobe

SessionProbe is a multi-threaded tool designed for penetration testing and bug bounty hunting. It evaluates user privileges in web applications by taking a session token and checking access across a list of URLs, highlighting potential authorization issues.

Language: Go - Size: 175 KB - Last synced at: 19 days ago - Pushed at: about 1 year ago - Stars: 447 - Forks: 37

WuliRuler/AutorizePro

🧿 AutorizePro是一款强大越权检测 Burp 插件,通过增加 AI 辅助分析 && 进一步优化检测逻辑,大幅降低误报率,提升越权漏洞检出效率。 [ AutorizePro is a authorization enforcement detection extension for burp suite. By adding Ai-assisted analysis, it significantly reduces the false positive rate and improves the efficiency of vulnerability detection.

Language: Python - Size: 3.75 MB - Last synced at: 9 days ago - Pushed at: 9 days ago - Stars: 247 - Forks: 11

Chocapikk/CVE-2023-22515

CVE-2023-22515: Confluence Broken Access Control Exploit

Language: Python - Size: 6.84 KB - Last synced at: 4 days ago - Pushed at: over 1 year ago - Stars: 132 - Forks: 29

AIex-3/confluence-hack

CVE-2023-22515

Language: Java - Size: 154 KB - Last synced at: over 1 year ago - Pushed at: over 1 year ago - Stars: 14 - Forks: 3

m3ssap0/wordpress-jetpack-broken-access-control-vulnerable-application

WARNING: This is a vulnerable application to test the exploit for the Jetpack < 13.9.1 broken access control (CVE-2024-9926). Run it at your own risk!

Language: Dockerfile - Size: 15.6 KB - Last synced at: 20 days ago - Pushed at: 6 months ago - Stars: 2 - Forks: 0

JacYuan1/Insecure-Blog-Application-Project

Fixing an Insecure Blog Application.

Language: PHP - Size: 3.83 MB - Last synced at: about 1 month ago - Pushed at: almost 2 years ago - Stars: 2 - Forks: 0

abeker/OWASP-Top-10-Front

Bachelor’s Work - WEB programming

Language: TypeScript - Size: 1.11 MB - Last synced at: 12 months ago - Pushed at: over 4 years ago - Stars: 2 - Forks: 0

NullChapter/Challenges_2023_OWASP_10

This repository contains OWASP Top 10 CTF challenges designed to test your skills in web application security. Each category includes both "easy" and "hard" challenges.

Language: Python - Size: 36.9 MB - Last synced at: about 1 year ago - Pushed at: over 1 year ago - Stars: 1 - Forks: 1

shoaibbshaikhh/VulnWeb

VulnWeb - Learn & Fix Common Security Flaws

Language: TypeScript - Size: 0 Bytes - Last synced at: about 2 months ago - Pushed at: about 2 months ago - Stars: 0 - Forks: 0

epmyas2022/uped-vunerabilidad

Script que permite obtener la información de estudiantes y la sesion de un usuario en el portal de la universidad. Ademas de poder inyectar codigo SQL en una cookie en la base de datos de la universidad.

Language: JavaScript - Size: 2.92 MB - Last synced at: about 2 months ago - Pushed at: 4 months ago - Stars: 0 - Forks: 0

dev-angelist/Web-Application-Penetration-Tester-WAPT-Notes

Web Application Penetration Tester (WAPT) Notes

Size: 22.1 MB - Last synced at: 6 months ago - Pushed at: 6 months ago - Stars: 0 - Forks: 1

AndreCoutinhom/owasp-top-10

Curso de OWASP Top 10: de Injections a monitoramento.

Size: 1.44 MB - Last synced at: 10 months ago - Pushed at: 10 months ago - Stars: 0 - Forks: 0

dorabz/security-vulnerabilities-django

Project in Django Python on theme Security vulnerabilites - Sensitive data exposure, Broken Access Control.

Language: Python - Size: 37.1 KB - Last synced at: about 2 years ago - Pushed at: about 2 years ago - Stars: 0 - Forks: 0

abeker/OWASP-Top-10

Bachelor’s Work - WEB programming

Language: Java - Size: 1.63 MB - Last synced at: 12 months ago - Pushed at: about 4 years ago - Stars: 0 - Forks: 1