2-day current streak·2-day longest streak
-
myLittlePuny ★ PINNED
Python script that checks for IDN homograph on a given domain name
Python ★ 9 7y agoExplain → -
vibegate ★ PINNED
Host-agnostic pre-write security hook for coding agent: detects user-input patterns via Semgrep and emits deterministic, no-LLM security guidance.
Python ★ 6 2d agoExplain → -
CVE-2019-11043
(PoC) Python version of CVE-2019-11043 exploit by neex
Python ★ 146 6y agoExplain → -
DNSenum
Bash script for DNS Enumeration.
Shell ★ 132 3y agoExplain → -
nmap-elasticsearch-nse
Nmap NSE script for enumerate indices, plugins and cluster nodes on an elasticsearch target
Lua ★ 43 5y agoExplain → -
modsecurity-to-elasticsearch ▣
Very simple and primitive Python script that sends ModSecurity JSON Audit Logs to Elasticsearch
Python ★ 17 7y agoExplain → -
ReputationIP
set of bash scripts to get a list of bad reputation IP addresses
Shell ★ 11 10y agoExplain → -
challenge-bypass-input-validation
Bypass strict input validation to exploit RCE
PHP ★ 9 5y agoExplain → -
OWASP-CRS-PoC
Tool that helps creating PoC for testing new CRS rule and rule-set
Shell ★ 3 6y agoExplain → -
poc-magento227-sqli
PoC SQLi on Magento 2.2.7
Shell ★ 2 7y agoExplain → -
goscan ⑂
Interactive Network Scanner
Go ★ 2 7y agoExplain → -
JShielder ⑂
Hardening Script for Linux Servers/ Secure LAMP-LEMP Deployer/ CIS Benchmark
PHP ★ 1 7y agoExplain → -
vis ⑂
Dynamic, browser-based visualization library
JavaScript ★ 0 10y agoExplain → -
spid-cie-php ⑂
Software Development Kit for easy SPID/CIE access integration with simplesamlphp - developed and mantained by Michele D'Amico @damikael
★ 0 1y agoExplain → -
nuclei-templates ⑂
Community curated list of templates for the nuclei engine to find security vulnerabilities.
★ 0 1y agoExplain → -
ModSecurity ⑂
ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx that is developed by Trustwave's SpiderLabs. It has a robust event-based programming language which provides protection from a range of attacks against web applications and allows for HTTP traffic monitoring, logging and real-time analysis. With over 10,000 deployments world-wide, ModSecurity is the most widely deployed WAF in existence.
C++ ★ 0 7y agoExplain → -
codeql-test
Test codeql
Shell ★ 0 3y agoExplain → -
secrules_parsing ⑂
A parser for the SecRules Langue
★ 0 3y agoExplain → -
wordpress-rule-exclusions-plugin ⑂
Rule exclusion plugin for WordPress.
★ 0 3y agoExplain → -
coreruleset ⑂
OWASP ModSecurity Core Rule Set (Official Repository)
Python ★ 0 2y agoExplain → -
SecLists ⑂
SecLists is the security tester's companion. It is a collection of multiple types of lists used during security assessments. List types include usernames, passwords, URLs, sensitive data grep strings, fuzzing payloads, and many more.
PHP ★ 0 9y agoExplain → -
www-project-modsecurity-core-rule-set ⑂
OWASP Foundation Web Respository
★ 0 5y agoExplain → -
owasp-modsecurity-crs ⑂
OWASP ModSecurity Core Rule Set (CRS) Project (Official Repository)
Perl ★ 0 6y agoExplain → -
xss-cheatsheet-data ⑂
This repository contains all the XSS cheatsheet data to allow contributions from the community.
★ 0 6y agoExplain → -
msc_pyparser ⑂
A ModSecurity rules parser
★ 0 6y agoExplain → -
jquery.terminal ⑂
jQuery Terminal Emulator - web based terminal
JavaScript ★ 0 7y agoExplain → -
wfuzz ⑂
Web application fuzzer
Python ★ 0 8y agoExplain → -
nikto ⑂
Nikto web server scanner
Perl ★ 0 10y agoExplain → -
bettercap ⑂
The Swiss Army knife for 802.11, BLE and Ethernet networks reconnaissance and attacks.
Go ★ 0 8y agoExplain → -
API-Security-Checklist ⑂
Checklist of the most important security countermeasures when designing, testing, and releasing your API
★ 0 8y agoExplain →
No repos match these filters.