
Detect_polyfill_CVE-2024-38537-
Here's a Python script that checks if the polyfill.io domain is present in the Content Security Policy (CSP) header of a given web application.

Here's a Python script that checks if the polyfill.io domain is present in the Content Security Policy (CSP) header of a given web application.

Spring Cloud Config CVE-2019-3799|CVE_2020_5410 漏洞检测

Extends Selenium's Python bindings to give you the ability to inspect requests made by the browser.

MCP server that runs SAST scans on local codebases and returns findings with severity and fixes, enabling AI assistants to perform security analysis…

A fast, keyboard-driven HTTP intercepting proxy and hacking & pentesting toolkit for the terminal.

GitHub Action: Offensive360 SAST scan with SARIF output for code scanning. 60+ languages. Free for open source.

GraphQL automated security testing toolkit

Server scanning component of purpleteam

Hooker is an opensource project for dynamic analyses of Android applications. This project provides various tools and applications that can be use to…

A modern vulnerable web app

CLI component of purpleteam

ExtendedMacro - BurpSuite plugin providing extended macro functionality

API-first subdomain discovery service using Certificate Transparency logs for fast, passive enumeration of subdomains via a REST API with JSON or…

REST/JSON API to the Burp Suite security tool.

Web app authorisation coverage scanning

Python API security testing tool from OpenStack Security Group

An on-path blackbox network traffic security testing tool