Stars
Cloud native networking and network security
Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters. It includes risk analysis, security, compliance, and misconfiguration scanning, saving Kubernet…
Bandit is a tool designed to find common security issues in Python code.
Fuzzing Payloads to Assist in Web Application Testing.
Damn Vulnerable Restaurant is an intentionally vulnerable Web API game for learning and training purposes dedicated to developers, ethical hackers and security engineers.
Course repo for Learning Lab course "Security strategy essentials"
Course repo for Learning Lab course "Securing your workflows". Template repo ➡
The Secure Coding Dojo is a platform for delivering secure coding knowledge.
A collection of content, tips and considerations from the AppSec community to spread the word of DevSecOps and guide aspirants who don't fit in with either Red or Blue team.
Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.
Tips and Tutorials for Bug Bounty and also Penetration Tests.
This repository creates pull requests to push a GitHub Actions workflow to a collection of workflows.
🐍 A toolkit for testing, tweaking and cracking JSON Web Tokens
GitHub Action to generate GitHub Advanced Security (GHAS) metrics report
Our main goal is to share tips from some well-known bughunters. Using recon methodology, we are able to find subdomains, apis, and tokens that are already exploitable, so we can report them. We wis…
AWS version of Kelsey's kubernetes-the-hard-way
Dropbox LLM Security research code and results
Advanced AWS Security Automation Resources: Used by Udemy Course 🎓
Fetch all the URLs that the Wayback Machine knows about for a domain
Repository for storing code for O'Reilly book
Hands-On Workshop for OAuth 2.0 and OpenID Connect 1.0
Node application to help managing Maturity Models like the ones created by BSIMM and OpenSAMM
Organize your API security assessment by using MindAPI. It's free and open for community collaboration.
Vulnerable REST API with OWASP top 10 vulnerabilities for security testing