Repository navigation

#

api-hacking

A collection of awesome API Security tools and resources. The focus goes to open-source tools and resources that benefit all the community.

3380
4 个月前

The OWASP OFFAT tool autonomously assesses your API for prevalent vulnerabilities, though full compatibility with OAS v3 is pending. The project remains a work in progress, continuously evolving towards completion.

Python
641
1 个月前

API Pentesting Tools are specialized security tools used to test and analyze the security of Application Programming Interfaces (APIs).

225
5 个月前

Tests your API automatically for common API vulnerabilities. Project is still Work In Progress. PRs are appreciated.

Python
34
1 年前

A Productivity-Boosting Burp Suite extension written in Kotlin that enables persistent sticky session handling in web application testing. Built with the Montoya API and modern Kotlin tooling.

Kotlin
11
9 天前

A Swiss knife for API security testing including a docker image, some labs and resources.

Vue
9
3 年前

A Caido extension written in Typescript that makes an OPTIONS request and determines if other HTTP methods than the original request are available. If there are other methods available, findings are created on the fly which will be enhanced based on pending further capabilities from the Caido SDK.

TypeScript
2
5 天前

컴퓨터공학과 해킹과 대응기술 정리입니다.

1
5 个月前

Caido plugin to cap and split workspace files by size — ideal for proxy files/log uploads with file size limits.

Vue
1
3 天前

BOLA_Excessive_Data_Exposure_API_Pentest (Based on crAPI, my learning)

0
3 年前