Complete Practical Study Plan to become a successful cybersecurity engineer based on roles like Pentest, AppSec, Cloud Security, DevSecOps and so on...
-
Updated
Oct 30, 2024
Complete Practical Study Plan to become a successful cybersecurity engineer based on roles like Pentest, AppSec, Cloud Security, DevSecOps and so on...
A collection of awesome API Security tools and resources. The focus goes to open-source tools and resources that benefit all the community.
This challenge is Inon Shkedy's 31 days API Security Tips.
A Collection of Notes, Checklists, Writeups on Bug Bounty Hunting and Web Application Security.
An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses
A Huge Learning Resources with Labs For Offensive Security Players
Proactive, Open source API security → API discovery, Testing in CI/CD, Test Library with 150+ Tests, Add custom tests, Sensitive data exposure
APIKit:Discovery, Scan and Audit APIs Toolkit All In One.
Organize your API security assessment by using MindAPI. It's free and open for community collaboration.
some examples that show basic and more advanced implementations of oauth2 authorization mechanism in spring-cloud microservices environment
A industry-leading free, high-performance, AI and semantic technology web application and API security protection product - uuWAF. 一款工业级免费、高性能、高扩展,支持AI和语义引擎的Web应用和API安全防护产品-南墙。Web应用防火墙、WAF、WAAP
Metlo is an open-source API security platform.
Stop half-done APIs! Cherrybomb is a CLI tool that helps you avoid undefined user behaviour by auditing your API specifications, validating them and running API security tests.
🔥 A curated list of awesome links related to application security related to the environments with NGINX or Kubernetes Ingres Controller (based on NGINX)
open-appsec is a machine learning security engine that preemptively and automatically prevents threats against Web Application & APIs. This repo include the main code and logic.
The OWASP OFFAT tool autonomously assesses your API for prevalent vulnerabilities, though full compatibility with OAS v3 is pending. The project remains a work in progress, continuously evolving towards completion.
An API security tool to capture and analyze API traffic, test API endpoints, reconstruct Open API specification, and identify API security risks.
Fast and light-weight API proxy firewall for request and response validation by OpenAPI specs.
Bug Bounty Tricks and useful payloads and bypasses for Web Application Security.
Dockerized ASP.NET Core Web API app in Heroku
Add a description, image, and links to the api-security topic page so that developers can more easily learn about it.
To associate your repository with the api-security topic, visit your repo's landing page and select "manage topics."