FIXME Le PAD pour proposer une amélioration à cette page : https://pad.zenk-security.com/p/merci

Des outils pour scanner des webapp et des services web

🛠 AuthMatrix is a Burp Suite extension that provides a simple way to test authorization in web applications and web services. https://github.com/SecurityInnovation/AuthMatrix

🛠 POSTMAN about API pentesting https://medium.com/datadriveninvestor/api-security-testing-part-1-b0fc38228b93 https://blog.secureideas.com/2019/03/better-api-penetration-testing-with-postman-part-1.html https://blog.secureideas.com/2019/03/better-api-penetration-testing-with-postman-part-2.html https://blog.secureideas.com/2019/04/better-api-penetration-testing-with-postman-part-3.html https://blog.secureideas.com/2019/06/better-api-penetration-testing-with-postman-part-4.html

🛠 flipkart-incubator/Astra Automated Security Testing For REST API's https://github.com/flipkart-incubator/Astra

🛠 RCE struts-pwn https://github.com/mazen160/struts-pwn