Production-ready Bangladesh courier customer delivery history and delivery-risk checker with Vercel serverless APIs, privacy-first design, rate limiting, and secure provider integrations.
-
Updated
Aug 17, 2026 - TypeScript
Production-ready Bangladesh courier customer delivery history and delivery-risk checker with Vercel serverless APIs, privacy-first design, rate limiting, and secure provider integrations.
A RESTful API brute-forcing tool in Go for ethical hacking practice. **Gobrute** is built for testing login passwords with multithreading, progress tracking, and customizable payloads, ideal for controlled environments like OWASP Juice Shop.
An intelligent web-proxy that monitors API requests of a web application and detects API security vulnerabilities automatically.
Replace, load and replay Postman collections to Burp, Zap, etc.
Simulate API attack patterns (BOLA, credential stuffing, shadow APIs, rate spikes) against your own dev/staging endpoints to verify your defenses.
Bugsmirror MASST (Mobile Application Security Suite and Tools) is a comprehensive platform for end-to-end mobile application security. It offers threat detection tools for static, runtime, dynamic API testing and red teaming; robust app shielding solution for threat mitigation; threat visibility dashboard; & AI powered insight in a single platform.
API security assessment identifying logical vulnerabilities and business risks through safe, read-only testing using Postman for the Future Interns Cybersecurity Internship (Task 3).
A-to-Z Bug Bounty Hunting Tools
Multi-layer API Security Analyzer built with FastAPI + ML anomaly detection.
Disclosure-safe IDOR/BOLA case study covering authorized access-control testing methodology, evidence handling, and remediation.
A command-line tool for performance and security testing of Node.js APIs. It supports load testing, CSRF testing, session hijacking testing, JWT validation testing, XSS, SQL Injection, and other security vulnerabilities.
API Testing & Pentesting Inside Chrome DevTools.
Amba2Pen is a Python-based tool designed to streamline the penetration testing process by automating various pentest tasks.
Professional API security auditing tool that detects rate limiting vulnerabilities and misconfigurations in REST APIs
High-performance API endpoint discovery tool for security professionals and bug bounty hunters.
OWASP-Top-10-Security-Vulnerabilities-With-Node.js
"FinVault Enterprise" — Fintech ecosystem with centralized authentication.
Vulnerable Express demo showing SQLi/XSS attacks before and after Argos runtime protection.
Lightweight CLI tool for scanning REST APIs for CORS issues, methods, and info leaks.
To associate your repository with the api-security-testing topic, visit your repo's landing page and select "manage topics."