web-application-security topic
TIDoS-Framework
The Offensive Manual Web Application Penetration Testing Framework.
h2t
h2t (HTTP Hardening Tool) scans a website and suggests security headers to apply
Vaile
Metasploit-like pentest framework derived from TIDoS (https://github.com/0xInfection/TIDoS-Framework)
NoSQLMap
Automated NoSQL database enumeration and web application exploitation tool.
VHostScan
A virtual host scanner that performs reverse lookups, can be used with pivot tools, detect catch-all scenarios, work around wildcards, aliases and dynamic default pages.
xxe-injection-payload-list
🎯 XML External Entity (XXE) Injection Payload List
second-order
Second-order subdomain takeover scanner
chronos
Extract pieces of info from a web page's Wayback Machine history
janusec
JANUSEC Application Gateway provides secure access, including reverse proxy, K8S Ingress Controller, Automatic ACME Certificate, WAF, 5-Second Shield, CC Defense, OAuth2 Authentication, Global Server...
php-security-check-list
PHP Security Check List [ EN ] 🌋 ☣️