Repository navigation

#

nosql-injection

swisskyrepo/GraphQLmap

GraphQLmap is a scripting engine to interact with a graphql endpoint for pentesting purposes. - Do not use for illegal testing ;)

Python
1528
1 年前

A Python Framework For NoSQL Scanning and Exploitation

Python
601
8 个月前

NoSql Injection CLI tool, for finding vulnerable websites using MongoDB.

Go
388
4 年前

Using this script, you can enumerate Usernames and passwords of Nosql(mongodb) injecion vulnerable web applications.

Python
172
6 年前

Zen protects your Node app against attacks with one line of code. Get peace of mind— at runtime.

TypeScript
77
2 天前

Learn how to automate XSS, SSRF, LFI, SQLI, NoSQLi

42
4 年前

NoSQL Injection Tool to bypass login forms & extract usernames/passwords using regular expressions.

Python
30
4 年前

PyBurp is a Burp Suite extension that provides predefined Python functions for HTTP/WebSocket traffic modification, context menu registration, Intruder payload processing, passive/active scanning, and Collaborator interaction. You can also directly access Montoya API in your Python scripts.

Java
28
10 天前

Manipulate a hidden API endpoint to change product pricing using HTTP method tampering and JSON injection, exposing a critical authorization flaw.

Python
8
3 个月前

The Power of Secure Coding Practices: Safeguarding MongoDB Against Exploitation

JavaScript
8
2 年前

Protects against common Node.js vulnerabilities in MEAN stack (MongoDB, Node.js).

TypeScript
7
3 年前

A comprehensive Fastify plugin designed to protect your No(n)SQL queries from injection attacks by sanitizing request data. This plugin provides flexible sanitization options for request bodies, parameters, and query strings.

JavaScript
4
2 个月前

Blind noSQL injection case study lab based on CVE-2018-3783

JavaScript
4
3 年前

NoSQLInsanity: Tool for Security Assesment NoSQL (Linear Search VS Binary Search)

Python
3
2 年前

StealthNoSQL : The Ultimate NoSQL Injection Tool - Unleash the power of advanced NoSQL injection techniques with this comprehensive command-line tool! Whether you’re pentesting MongoDB, CouchDB, or any other NoSQL database, StealthNoSQL has you covered. 🚀💻

Shell
3
1 年前

This repository contains a web app that helps to understand NoSQL injection and how to protect websites against it

TypeScript
2
2 年前