
CentralizedFirewall
provides a Firewall Manager API designed to centralize and streamline the management of firewall configurations

provides a Firewall Manager API designed to centralize and streamline the management of firewall configurations

Read-only Azure DevOps enumeration tool that queries the REST API to surface projects, repositories, service connections, builds, pipeline secrets,…

Lightweight Python library for obfuscating JWT payload values using XOR encryption with timestamp-based keys, preventing plaintext decoding of…

OWASP-maintained Top 10 API security risks document and documentation portal with best practices for building, breaking, and defending APIs.

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.

A security assessment tool for Hitachi Vantara's Pentaho Business Analytics platform.

Community curated list of nuclei templates for finding "unknown" security vulnerabilities.

ASOC, ASPM, DevSecOps, Vulnerability Management Using ArcherySec.

bluemonday: a fast golang HTML sanitizer (inspired by the OWASP Java HTML Sanitizer) to scrub user generated content of XSS

A command-line tool to check if passwords have been exposed in data breaches using the Have I Been Pwned (HIBP) API.

A web version of the bash scripts wrote for Check Point CVE-2026-50751 and CVE-2026-50752. This uses a local server to scan and make changes using…

ChilliCream Nitro GraphQL version 28.0.13 is vulnerable to multiple Stored Cross Site Scripting (XSS) Vulnerabilities

CVE-2025-54554 – Unauthenticated Access in tiaudit REST API leading to Sensitive Information Disclosure

CrowdStrike Feed Management System. CrowdFMS is a framework for automating collection and processing of samples from VirusTotal, by leveraging the…

The OWASP Cheat Sheet Series was created to provide a concise collection of high value information on specific application security topics.

Burp Suite extension for decoding Web3 JSON-RPC traffic, including smart contract function calls, responses, and ABI resolution with proxy-aware and…

A "Mishandling of Input to API" or "Exposed Dangerous Method or Function" vulnerability in PrintixService.exe, in Kofax Printix's "Printix Secure…

CVE on FlagForgeCTF on versions v2.0.0 to v2.3.1. Upgraded to version 2.3.2 to fix the issue.