irgoncalves Goto Github PK
Name: Ismael Gonçalves
Type: User
Blog: https://sharingsec.net
Name: Ismael Gonçalves
Type: User
Blog: https://sharingsec.net
This repository contains links to awesome security articles.
🔥 Everything awesome about web-application firewalls (WAF).
A ZAP Help Add-On Script for signing requests to AWS
Barracuda Platform (NGFW and ADC) brute force user enum using side channel
aquatone results for sites with bug bountys
A collection of ZAP scripts provided by the community - pull requests very welcome!
Checklist for container security - devsecops practices
CryptoNice is both a command line tool and library which provides the ability to scan and report on the configuration of SSL/TLS for your internet or internal facing web services. Built using the sslyze API and ssl, http-client and dns libraries, cryptonice collects data on a given domain and performs a series of tests to check TLS configuration and supporting protocols such as HTTP2 and DNS.
Introduction to Volterra lab environment
This enforces signatures for CVE-2021-44228 across all policies on a BIG-IP ASM device
This enforces F5 WAF signatures for Spring4Shell and Spring Cloud vulnerabilities across all policies on a BIG-IP ASM device
This tool creates a custom signature set on F5 WAF and apply to policies in blocking mode
F5 Adv. WAF/ASM policies quick view.
Web Application Firewall Security Testing Tool
Terraform deployments for BIG-IP in public cloud environments (AWS, Azure, Google). F5 Automation Toolchain is used for easier device and app configuration.
Google Cloud Platform Security
Simple script to brute force JWT token signature
This simple tool creates username/password combination for HTTP Digest Authentication. It can be used for password lookup during password auditing/assessment/pen-testing for WildFly / JBoss / Apache.
This contains a bundle with an executable to exploit ms17-010 remote or locally. It does not require Python.
A list of open source web security scanners
Search is a simple text search to look for various words within files on a give folder.
slowdos_detector is Python tool to detect Slow HTTP DoS Attack (GET and POST) on pcap files.
Useful commands/tricks using smbclient/nmap in a pentesting/auditing/redteaming
Username Enumeration tool using Side-Channel (Timing) over HTTP
Terraform module for Deploying BIG-IP in GCP
The Web Security Testing Guide is a comprehensive open source guide to testing the security of web applications and web services.
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.