OAUTHScan

OAuth scanner

Automates security checks on OAUTHv2 and OpenID applications

Burp Suite Extension useful to verify OAUTHv2 and OpenID security

GitHub

169 stars
8 watching
26 forks
Language: Java
last commit: 3 months ago

Related projects:

Repository Description Stars
dnet/burp-oauth A Java plugin for Burp Suite that enables OAuth authentication 42
aress31/openapi-parser Automates security assessment of REST APIs using Burp Suite 195
seisvelas/san-scanner An extension for Burp Suite that helps discover Subject Alt Names in SSL certificates 3
gluufederation/oxauth An OAuth 2.0 and OpenID Connect implementation for authentication and authorization 425
abblix/oidc.server A comprehensive .NET library providing flexible support for OAuth2 and OpenID Connect authentication and authorization 40
simioni87/auth_analyzer A Burp extension tool designed to help identify authorization issues in web applications by automating request repetition and parameter value extraction. 186
openscanner/xguardian A security scanner for OSX applications that detects potential vulnerabilities in URL scheme hijack, bundle ID hijack, and keychain hijack. 41
peachtech/peachapisec-burp A tool for integrating automated security testing with web API analysis in Burp Suite 2
auth0/auth0.net A .NET client library for interacting with the Auth0 Authentication and Management APIs. 329
thomashartm/burp-aem-scanner An AEM-focused plugin to detect and automate security checks for Adobe Experience Manager CMS installations 74
sean-mcrae/oauthv1---signing-burp-extension- An extension for Burp Suite that adds support for OAuth v1 authentication methods 2
akabe1/upnp-bhunter A Burp Suite extension that automates the process of discovering and attacking UPnP services. 16
codewatchorg/burp-anonymouscloud An extension that scans cloud storage services for vulnerabilities and identifies publicly accessible resources. 42
augustd/burp-suite-software-version-checks An extension for Burp Suite that detects software version numbers in error responses and server headers. 30
augustd/burp-suite-gwt-scan Automates identification of injection points in GWT requests for penetration testing purposes. 13