110 results for “topic:vapt”
Complete Solution for VAPT/AppSec and Pentesting Guide: Web | Mobile | API | Thick Client | Source Code Review | DevSecOps | Wireless | Network Pentesting | SAST | DAST etc...
Plugin for JADX to integrate MCP server
A Python3 based C2 server to make life of red teamer a bit easier. The payload is capable to bypass all the known antiviruses and endpoints.
eLearnSecurity Junior Penetration Tester (eJPT) v2 Notes
MCP server for JADX-AI Plugin
A MCP Server for APK Tool (Part of Android Reverse Engineering MCP Suites)
MCP Client which serves as bridge between mcp servers and local LLMs running on Ollama, Created for MCP Servers Developed by Me, However other MCP Servers may run as well
Physical penetration testing is a critical aspect of security assessment that involves simulating real-world attacks to evaluate the effectiveness of physical security controls.
This is my personal repo, which includes bug bounty tips, a collection of tools, one-liners, and other resources I personally prefer while hunting. It is still under development, so feel free to contribute.
A simple Dockerfile to build an image starting from the latest official one of Kali Linux and including some useful tools.
🛡️ 🌐 🥷🏻 Everything CyberSecurity Related 🏴☠️ 👾 🕵🏾
The iOS Buster is a groundbreaking penetration testing tool for iOS, capable of performing both static and dynamic testing. It provides detailed reports, including STR, highlighting discovered vulnerabilities. It serves as a valuable addition to MobSF.
This is Web Application Penetration Testing Report made for everybody who wanted a glance of how to make a professional report for pentetring purpose. The penetration testing has been done in a sample testable website.
BurpSuite Extension leveraging new Montoya API to automatically sets payload positions to your inruder tab saving you time during VAPT.
SCOPE [Shadow Cache Observation, Poisoning & Evaluation] is a powerful tool designed to help you find and test vulnerabilities in subdomains that might be exposed to cache poisoning attacks. If a website isn't properly handling cache, it could lead to security issues where malicious content gets stored and served to users.
AI-Assisted Vulnerability Assessment & Penetration Testing Tool SecScanX is an open-source security scanning platform that combines traditional penetration testing tools with artificial intelligence to provide comprehensive vulnerability assessments. Designed for beginners, researchers, and security professionals,
All things Cybersecurity!
CyberSecurity Interview Questions
Project Davinci, led by Government Engineering College (GEC) Thrissur, focuses on "Secure-KTU," enhancing the security of the KTU website. The project assesses vulnerabilities per NCIIPC RVDP standards, addressing threats like data breaches and unauthorized access, ensuring safer online services.
DVWA--Lab assessment
XML-Hydra is a tool to bruteforce user passwords via public facing XML-RPC interface in a Wordpress application.
History of tasks related to DevOps, Cloud and Security.
The Security Insights Platform is a web-based cybersecurity tool designed to simulate key security assessments. It features three main modules: Automated VAPT, Compliance Audit (GDPR & ISO 27001), and an SSL/TLS Checker. The platform helps users understand and practice core cybersecurity concepts in a simplified environment.
Postman-API-Count is a tool that simplifies the extraction and analysis of APIs from Postman collections. It allows users to extract APIs based on specific HTTP methods, identify APIs without any defined methods, and retrieve the total count of APIs in a collection. This tool is beneficial for developers and testers working with Postman collections
PYTHA-SHELL is an educational cybersecurity tool featuring an RCE mode. It offers practical examples and demonstrations to help students understand various attacks and vulnerabilities in a controlled environment. PYTHA-SHELL provides hands-on experience with real-world security risks making it a valuable resource for learning and teaching
Parrot OS : Vulnerability Analysis in Parrot Linux is a mobile app that contains tutorials, commands and live screenshots to help aspiring learners in using Parrot Linux Operating System.
Ultimate Automation using tools like puredns, httpx, dnsx, smap, aquatone, waybackurls, gf, massdns, subzy, waymore, assetfinder, subfinder, and amass. Runs in Docker.
This is a tool used by several security researchers to find Open Redirect Bug
A curated resource for mobile security testing based on OWASP MASTG. Includes notes, tools, and practical examples for pentesters and developers.
WordPress Contact Form 7 - Unrestricted File Upload