Pinned Repositories
containerify
Build node.js docker images without docker
ContentSecurityPolicy.Net
ASP.NET module for easily adding Content Security Policy through web.config. See readme below for syntax
csp-testing
For testing browser support for Content Security Policy
deserialize
intentionally vulnerable API
gofigure
Simple library for animated drawings of arrows, boxes and text in HTML5
MalaRIA-Proxy
Proof of concept code (which means poor code quality) for a proxy abusing unrestricted cross domain policies.
RESTful-Security
My talk from Javazone 2012
retire-site-scanner
Site-scanner using phantomjs and retire.js
writings
blog posts
retire.js
scanner detecting the use of JavaScript libraries with known vulnerabilities. Can also generate an SBOM of the libraries it finds.
eoftedal's Repositories
eoftedal/writings
blog posts
eoftedal/deserialize
intentionally vulnerable API
eoftedal/containerify
Build node.js docker images without docker
eoftedal/eoftedal.github.com
eoftedal/RiskTracker
For tracking risk
eoftedal/2019
Website for BSides Oslo 2019
eoftedal/afl-training
Exercises to learn how to fuzz with American Fuzzy Lop
eoftedal/auto-changelog
Command line tool for generating a changelog from git tags and commit history
eoftedal/betingelser
eoftedal/CheatSheetSeries
The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.
eoftedal/cilium
eBPF-based Networking, Security, and Observability
eoftedal/DefinitelyTyped
The repository for high quality TypeScript type definitions.
eoftedal/echo
eoftedal/equinor-ctf-2022
Educational guides, writeups and challenges for the 2022 Equinor CTF
eoftedal/foil
eoftedal/horrible-node
eoftedal/keep-a-changelog
If you build software, keep a changelog.
eoftedal/kube-hunter
Hunt for security weaknesses in Kubernetes clusters
eoftedal/libphonenumber
Google's common Java, C++ and JavaScript library for parsing, formatting, and validating international phone numbers.
eoftedal/monopolpenger
eoftedal/osm-docs
a docs page for open service mesh
eoftedal/routes-maven-plugin
Plugin for showin JAX-RS routes/verbs
eoftedal/sec-deadlines.github.io
Deadline countdowns for academic conferences in Security and Privacy
eoftedal/soccerscore
eoftedal/soccerscorev2
eoftedal/spiffe.io
Source for the SPIFFE and SPIRE project websites. Hosted by the Cloud Native Computing Foundation
eoftedal/tensorflowdemo
eoftedal/ttt-ext
Chrome extension to aid in finding DOMXSS by simple taint analysis of string values.
eoftedal/WebGoat.NET
OWASP WebGoat.NET
eoftedal/wstg
The Web Security Testing Guide is a comprehensive Open Source guide to testing the security of web applications and web services.