-
Updated
Sep 17, 2020 - Python
appsec
Here are 119 public repositories matching this topic...
-
Updated
Sep 18, 2020 - Python
-
Updated
Sep 18, 2020 - JavaScript
-
Updated
Sep 10, 2020 - Python
-
Updated
Sep 14, 2020 - Ruby
-
Updated
Jul 19, 2020 - Shell
What's the issue?
Overwritten test scenario, can be summarized and link to payload lists from other repos
How do we solve it?
Chop down the content to the required and needed information, link to payload lists instead of enumerating all possible usernames and passwords, provide further guidance on how to test.
If no one is up to handle it, I can take care of it
-
Updated
Jun 11, 2019
-
Updated
Jul 28, 2020 - HTML
Authentication via Azure/aad-pod-identity for keyvault access could be a good feature to avoid use of clientId/ clientSecret in chart values. Don't you think ?
-
Updated
Sep 18, 2020 - Java
-
Updated
Sep 15, 2020
-
Updated
Oct 16, 2019 - Go
-
Updated
Sep 15, 2020 - HTML
I've found a way to bypass certain filters which implement the following behaviour: The filter checks everything between opening and closing or opening and opening brackets. A whitelist is checked against the HTML tag as well as every attribute found within the brackets. Whenever an attribute is not whitelisted the filter will block the input. Closing tags are detected as soon as a slash is found
sim swapping
-
Updated
Aug 7, 2020
-
Updated
Jul 23, 2020 - Dockerfile
-
Updated
Sep 14, 2020 - Python
-
Updated
Sep 18, 2020 - Scala
-
Updated
Jan 9, 2020
-
Updated
Jun 11, 2019 - PHP
It will be a fun exercise to make scan work for mono repos such as https://github.com/swapnil-linux/spring-boot-examples
In theory, this can be achieved using a bit of bash with the new scan AppImage.
-
Updated
Jan 7, 2020 - HTML
-
Updated
Aug 14, 2020 - Python
-
Updated
Mar 24, 2019 - Python
-
Updated
Aug 8, 2020 - Java
-
Updated
Jun 5, 2020 - Python
-
Updated
Sep 9, 2020 - JavaScript
Improve this page
Add a description, image, and links to the appsec topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the appsec topic, visit your repo's landing page and select "manage topics."


The upstream project has added support for CSS inspection. ZAP's Wappalyzer add-on should add support for the same.
It's currently unclear to me if this is applicable to inline styles, just .css files, or both. However, the funct