Android v7+ application to perform a dictionary brute force attack against a host.
Custom scripts for the PIPER Burp extensions.
POC in order to protect an document upload application feature against "malicious" document submission.
Provide some tips to handle Injection into application code (OWASP TOP 10 - A1).
BURP extension to record every HTTP request send via BURP and create an audit trail log of an assessment.
Contains all my research and content produced regarding the log4shell vulnerability
POC in order to explore and describe a proposition for the automation of the testing of the authorization matrix.
POC in order to materialize CSRF prevention concepts described in the following OWASP CSRF cheatsheet
Research on GraphQL from an AppSec point of view.