PowerPoint slide deck plus demo video content from presentation at SaltConf18
-
Updated
Sep 13, 2018
PowerPoint slide deck plus demo video content from presentation at SaltConf18
This repository showcases the comprehensive manual testing process conducted for Sonic Sargam
Advanced URL Availability Checker Checks URLs for availability with comprehensive error handling, retry logic, and progress tracking.
One-command rooted Android 12 security-testing lab (Magisk root, system Burp CA, privileged Play Store, Frida) for authorized mobile app testing
AI Agent security testing framework with 160+ attack cases from latest research
API security lab demonstrating Broken Object Level Authorization (IDOR/BOLA) and proper authorization enforcement.
A personal Python toolkit for preparing Android APKs for authorized HTTPS inspection and certificate-pinning analysis.
CLI-first authorization regression testing with bounded browser exploration and deterministic paired replay.
A Python toolkit with modular security checks and console, HTML and JSON reporting.
This is a toolkit for recovery of file and directory structures from exposed .DS_Store metadata
A stack-agnostic web application penetration testing checklist based on OWASP WSTG, ASVS, PTES & NIST.
Auditable Linux toolkit for testing and independently verifying containment controls around mediated AI-agent sandboxes.
Fuzzes LLM safety guardrails: takes one borderline topic, generates many reworded and re-encoded variants, sends them to a model, and reports how often the safety filter was bypassed. Provider-agnostic, zero dependencies, runs offline by default.
Detect undeclared cross-run communication channels in autonomous AI agent environments
Guide users through a structured workflow for co-authoring documentation. Use when user wants to write documentation, proposals, technical specs, decision docs, or similar structured content. This workflow helps users efficiently transfer context, refine content through iteration, and verify the doc works for readers. Trigger when user mentions ...
Authorized Chrome application-layer traffic and interaction capture via CDP, with safe-by-default redaction.
A regression test for your PII gateway's trust boundary: black-box, self-hosted, runs in CI. Works with any gateway that speaks the OpenAI or Anthropic API.
Defensive security checks a QA team can run in CI, against OWASP Juice Shop running locally in Docker.
Comprehensive OWASP Web Application Security Testing Checklist aligned with the latest OWASP WSTG. Includes guidance for web, API, and client-side testing.
SentinelScan is a Python-based web vulnerability scanner that identifies common OWASP Top 10 security misconfigurations, analyzes HTTP security posture, and generates actionable reports for developers and security professionals.
To associate your repository with the security-testing topic, visit your repo's landing page and select "manage topics."