rezaduty's Stars
p4-team/ctf
Ctf solutions from p4 team
eoftedal/deserialize
intentionally vulnerable API
coreyshuman/GeekwiseApplicationSecurity
12-week Geekwise course on web application security and hardening.
secdec/astam-correlator
Vulnerability consolidation and management tool, enhances scan results by merging different findings of the same weakness across multiple static/dynamic scans
rezaduty/threadfix
tranmyabs/OWASPBenchmark
OWASP Benchmark for the DAST
celioggr/JVL
Target Web application vulnerabilities and write secure Java code
rezaduty/test-1
snoopysecurity/awesome-burp-extensions
A curated list of amazingly awesome Burp Extensions
snoopysecurity/OSCE-Prep
A list of freely available resources that can be used as a prerequisite before taking OSCE.
Cyrivs89/docker-dvws
Damn Vulnerable Web Services Docker Container
so-sc/OWASP-mutillidae-2
Mutillidae is a free, open source web application provided to allow security enthusiasts to pen-test and hack a web application.
webpwnized/mutillidae
OWASP Mutillidae II is a free, open-source, deliberately vulnerable web application providing a target for web-security training. This is an easy-to-use web hacking environment designed for labs, security enthusiasts, classrooms, CTF, and vulnerability assessment tool targets.
hackersql/test
mgeeky/Penetration-Testing-Tools
A collection of more than 170+ tools, scripts, cheatsheets and other loots that I've developed over years for Red Teaming/Pentesting/IT Security audits purposes.
SpiderLabs/MCIR
The Magical Code Injection Rainbow! MCIR is a framework for building configurable vulnerability testbeds. MCIR is also a collection of configurable vulnerability testbeds.
padraic/phpsecurity
tanc7/USBRubberDuckyTests
Warning, almost everything in this Repo is MALWARE. I am using this to experiment with various functionality for the Hak5 USB Rubber Ducky Keystroke Attack Device. And trying to determine which methods work.
fpetru/WebApiMongoDB
Using MongoDB with ASP.NET Web API and ASP.NET Core to perform CRUD operations and build a NotebookApp
brantburnett/N1QlInjection
Example of N1QL injection attack against Couchbase Server 4.0
blaCCkHatHacEEkr/PENTESTING-BIBLE
articles
sandrinov/HackingWeb
Lucifer1993/TPscan
一键ThinkPHP漏洞检测
youngyangyang04/NoSQLInjectionAttackDemo
NoSQLInjectionAttackDemo is website demo for test NoSQL Injection. There are two website demos in this project and all databases are mongoDB
shirishp/NoSQLInjectionDemo
NoSQL Injection Demo Application
ssl/ezXSS
ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.
cr0hn/vulnerable-node
A very vulnerable web site written in NodeJS with the purpose of have a project with identified vulnerabilities to test the quality of security analyzers tools tools
cr0hn/dockerscan
Docker security analysis & hacking tools
cr0hn/nosqlinjection_wordlists
This repository contains payload to test NoSQL Injections
alisaesage/Disclosures
Zero-day and N-day security vulnerability notes, analysis, and proof-of-concepts