Skip to content
KitploitKITPLOIT
OutilsBlog
Soumettre
OutilsBlog
Soumettre

Outils de Hacking, PenTest et Cybersécurité pour votre Arsenal de Sécurité !

Kitploit est un répertoire d'outils de hacking, de cybersécurité et de pentesting. Découvrez les dernières mises à jour des projets pour trouver des vulnérabilités, analyser des systèmes, automatiser les tests et renforcer votre sécurité.

··Flux·Contact·Confidentialité·© 2026 Kitploit

Répertoire d'outils

Catégories

Voir toutes les catégories
Loading categories
Tests de Sécurité des API | Kitploit
Catégories

Tests de Sécurité des API

Outils pour l'évaluation de la sécurité des API REST, SOAP et GraphQL.

Recommandé par Kitploit

Meilleurs outils

10 sélectionnés
kiterunner preview#1

kiterunner

GitHubassetnote/kiterunner
3.2kil y a 5 ans
zaproxy preview#2

zaproxy

GitHubzaproxy/zaproxy
15.6kil y a 13h 53m
nuclei preview#3

nuclei

GitHubprojectdiscovery/nuclei
30.4kil y a 21h 38m
sqlmap preview#4

sqlmap

GitHubsqlmapproject/sqlmap
38.2kil y a 2 jours
graphql-cop preview#5

graphql-cop

GitHubdolevf/graphql-cop
684il y a 10 mois
graphw00f preview#6

graphw00f

GitHubdolevf/graphw00f
884il y a 3 mois
Arjun preview#7

Arjun

GitHubs0md3v/arjun
6.4kil y a 1 an
jwt_tool preview#8

jwt_tool

GitHubticarpi/jwt_tool
6.7kil y a 1 an
crAPI preview#9

crAPI

GitHubowasp/crapi
1.6kil y a 1 jour
automatic-api-attack-tool preview#10

automatic-api-attack-tool

GitHubimperva/automatic-api-attack-tool
495il y a 6 ans
Plus récentsPertinencePlus populairesMis à jour récemment
367 résultats
CVE-2023-45828 preview

CVE-2023-45828

GitHubrandomrobbiebf/cve-2023-45828

RumbleTalk Live Group Chat <= 6.1.9 - Autorisation manquante via handleRequest

vulnerability-analysisexploitationweb-application-exploitation+3
il y a 2 ans
s4e-cve-scanner preview

s4e-cve-scanner

GitHubs4e-io-old-labs/s4e-cve-scanner

Scanner basé sur une API qui récupère et liste les dernières Vulnérabilités et expositions communes (CVE) pour une évaluation automatisée de la…

vulnerability-scannersapi-security-testinginformation-gathering
il y a 5 ans
CVE-2024-50633 preview

CVE-2024-50633

GitHubcetinpy/cve-2024-50633

Preuve de concept d'exploitation pour CVE-2024-50633, une vulnérabilité de niveau d'autorisation d'objet cassé (BOLA) dans Indico v3.2.9–v3.3.2,…

vulnerability-analysisexploitationweb-application-exploitation+3
il y a 1 an
Swagger-HTML-Injection-CVE-2025-8191 preview

Swagger-HTML-Injection-CVE-2025-8191

GitHubmayank-s16/swagger-html-injection-cve-2025-8191

Test XSS Swagger 3.14.1 à 3.37.0

vulnerability-analysisexploitationweb-application-exploitation+2
il y a 9 mois
CVE-2023-31719 preview

CVE-2023-31719

GitHubmateustesser/cve-2023-31719

Exploit de preuve de concept pour CVE-2023-31719, démontrant une injection SQL dans le point de terminaison /api/signin de l'application web FUXA via…

vulnerability-analysisexploitationweb-application-exploitation+3
il y a 2 ans
CVE-2024-9707-Poc preview

CVE-2024-9707-Poc

GitHubnxploited/cve-2024-9707-poc

Le plugin Hunk Companion pour WordPress : vulnérable à l'installation/activation non autorisée de plugins (versions jusqu'à la 1.8.4 incluse).

vulnerability-analysisexploitationweb-application-exploitation+3
il y a 1 an
Big-IP-Next-CVE-2024-26026 preview

Big-IP-Next-CVE-2024-26026

GitHubgrtmaldet/big-ip-next-cve-2024-26026

Exploit de preuve de concept pour CVE-2024-26026 : injection SQL non authentifiée dans l'API F5 BIG-IP Next Central Manager, permettant l'extraction…

vulnerability-analysisexploitationweb-application-exploitation+3
il y a 2 ans
CVE-2024-54369 preview

CVE-2024-54369

GitHubrandomrobbiebf/cve-2024-54369

Zita Site Builder <= 1.0.2 - Absence d'autorisation menant à l'installation arbitraire de plugins

vulnerability-analysisexploitationapi-security-testing+3
il y a 1 an
perwendel__spark_CVE-2018-9159_2-7-1 preview

perwendel__spark_CVE-2018-9159_2-7-1

GitHubshoucheng3/perwendel__spark_cve-2018-9159_2-7-1

Framework web léger Java 8 avec routage, filtres et service de fichiers statiques. Comprend un avis de sécurité pour les versions plus anciennes et…

general-purpose-utilitiesvulnerability-analysisapi-security-testing+3
il y a 1 an
CVE-2023-6289 preview

CVE-2023-6289

GitHubrandomrobbiebf/cve-2023-6289

Swift Performance Lite <= 2.3.6.14 - Autorisation manquante menant à l'exportation non authentifiée des paramètres

vulnerability-analysisexploitationapi-security-testing+3
il y a 2 ans
RISE-Ultimate_Project_Manager_e_CRM preview

RISE-Ultimate_Project_Manager_e_CRM

GitHubl4zyfox/rise-ultimate_project_manager_e_crm

CVE-2025-3855 - RISE Ultimate Project Manager - IDOR

reconnaissancevulnerability-analysisweb-application-exploitation+3
il y a 1 an
perwendel__spark_CVE-2018-9159_2_7_2_fixed preview

perwendel__spark_CVE-2018-9159_2_7_2_fixed

GitHubshoucheng3/perwendel__spark_cve-2018-9159_2_7_2_fixed

Framework web léger en Java 8 pour créer des API REST et des applications web, avec routage intégré, service de fichiers statiques et prise en charge…

general-purpose-utilitiesvulnerability-analysisapi-security-testing+3
il y a 1 an
jenkinsci__perfecto-plugin_CVE-2020-2261_1-17 preview

jenkinsci__perfecto-plugin_CVE-2020-2261_1-17

GitHubshoucheng3/jenkinsci__perfecto-plugin_cve-2020-2261_1-17

Plugin Jenkins pour les tests automatisés d'applications mobiles via le cloud Perfecto, gérant les connexions de tunnel sécurisé et les…

mobile-app-pentestingapi-security-testingcloud-security+1
il y a 1 an
Burp_CVE-2025-31324 preview

Burp_CVE-2025-31324

GitHubblueowl-overlord/burp_cve-2025-31324

Extension Burp Suite basée sur Python est conçue pour détecter la présence de CVE-2025-31324

vulnerability-scannersexploitationweb-application-exploitation+3
il y a 1 an
CVE-2023-23752 preview

CVE-2023-23752

GitHubaureum01/cve-2023-23752

Une automatisation bash qui exploite les endpoints vulnérables de l'API Joomla! 4.0 - 4.2.7

vulnerability-analysisexploitationweb-application-exploitation+3
il y a 2 ans
suds preview

suds

GitHubosirium/suds

Clone de suds 0.4 + suds-0.4-CVE-2013-2217.patch

vulnerability-analysisscripting-automationapi-security-testing+3
il y a 8 ans
Detect_polyfill_CVE-2024-38537- preview

Detect_polyfill_CVE-2024-38537-

GitHubhavoc10-sw/detect_polyfill_cve-2024-38537-

Voici un script Python qui vérifie si le domaine polyfill.io est présent dans l'en-tête Content Security Policy (CSP) d'une application web donnée.

vulnerability-scannersapi-security-testingconfiguration-auditing+2
il y a 2 ans
SpringCloud preview

SpringCloud

GitHubcorgizz/springcloud

Détection des vulnérabilités Spring Cloud Config CVE-2019-3799|CVE_2020_5410

vulnerability-scannersexploitationapi-security-testing+3
il y a 4 ans
Précédent1…18192021Suivant