CakeFuzzer is an automated vulnerability discovery tool designed for web applications built on the CakePHP framework. The tool operates continuously to identify security vulnerabilities in CakePHP-based applications while maintaining a focus on reducing false positive results. It specifically targets applications developed using the Cake PHP framework architecture. The project includes research documentation and maintains records of reported bugs through the CakePHP Application Cybersecurity Research article series. This documentation provides insights into the research methodology and vulnerability discovery process. CakeFuzzer aims to streamline the security testing process for CakePHP applications by providing automated scanning capabilities tailored to the framework's specific characteristics and common vulnerability patterns.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
ThreatLocker is an enterprise cybersecurity platform that provides comprehensive endpoint protection and zero-trust security to prevent ransomware, viruses, and other malicious software from running on endpoints.
SearchCode is an extensive code search engine that indexes 75 billion lines of code from millions of projects to help developers find coding examples and libraries.
Grafeas is an API specification for managing and auditing metadata about software resources across the software supply chain.
RiskInDroid is a machine learning-based tool that performs quantitative risk analysis of Android applications by reverse engineering bytecode and analyzing permission usage to generate numeric risk scores.
QIRA is a competitor to strace and gdb with MIT license, supporting Ubuntu and Docker for wider compatibility.
A technology lookup and lead generation tool that identifies the technology stack of any website and provides features for market research, competitor analysis, and data enrichment.
A Nuxt 3 security module that automatically implements OWASP security patterns through HTTP headers, middleware, and various protection mechanisms including CSP, XSS validation, CORS, and CSRF protection.
A plugin for viewing, detecting weak configurations, and generating Content Security Policy headers.
Search engine for open-source Git repositories with advanced features like case sensitivity and regular expressions.