Source code for Hacker101.com - a free online web and mobile security class.
-
Updated
Jun 15, 2020 - CSS
Source code for Hacker101.com - a free online web and mobile security class.
Mobile Security Framework (MobSF) is an automated, all-in-one mobile application (Android/iOS/Windows) pen-testing, malware analysis and security assessment framework capable of performing static and dynamic analysis.
A list of resources for those interested in getting started in bug bounties
A list of web application security
A container repository for my public web hacks!
Awesome Node.js Security resources
A list of all FTP servers in IPv4 that allow anonymous logins.
Fast CORS misconfiguration vulnerabilities scanner
Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Application Security Testing (DAST).
Icons should bring up relevant window:
Web application vulnerability scanner
This Lab contain the sample codes which are vulnerable to Server-Side Request Forgery attack
java source code static code analysis and danger function identify prog
Clear all your logs in [linux/windows] servers
Runs the default Google Lighthouse tests with additional security tests
DOMXSS Scanner is an online tool to scan source code for DOM based XSS vulnerabilities
Awesome Object Capabilities and Capability Security
A Burpsuite plugin (BApp) to aid in the detection of scripts being loaded from over 23000 malicious cryptocurrency mining domains (cryptojacking).
File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.
CS 253 Web Security course at Stanford University
A service that can track data breaches like "Have I Been Pwned", but it is specific for Taiwan.
Cross-Site Scripting (XSS) command line tool for testing lists of XSS payloads on web apps.
Add a description, image, and links to the web-security topic page so that developers can more easily learn about it.
To associate your repository with the web-security topic, visit your repo's landing page and select "manage topics."
.well-known(RFC) is becoming an increasingly popular destination for stashing site-wide metadata. Some of that metadata is relevant to site security or may unintentionally leak information, so we should scan it.Some starting points: