Damn Vulnerable GraphQL Application is a deliberately weak and insecure implementation of GraphQL that provides a safe environment to attack a GraphQL application, allowing developers and IT professionals to test for vulnerabilities. DVGA has numerous flaws, such as Injections, Code Executions, Bypasses, Denial of Service, and more. A public Postman collection is also available to replay solutions to the challenges. You can import the collection by clicking on the Run in Postman button below. DVGA supports Beginner and Expert level game modes, which will change the exploitation difficulty.
Static code analysis tool for infrastructure as code (IaC) and software composition analysis (SCA) with over 1000 built-in policies for AWS, Azure, and Google Cloud.
A source code search engine for searching alphanumeric snippets, signatures, or keywords in web page HTML, JS, and CSS code.
Octoscan is a static analysis tool that scans GitHub Actions workflows for security vulnerabilities and misconfigurations.
Real-time, eBPF-based Security Observability and Runtime Enforcement component
A centralized dashboard for running and scheduling WordPress scans powered by wpscan utility.
A next-generation web scanner that identifies websites and recognizes web technologies, including content management systems, blogging platforms, and more.
InQL is a Burp Suite extension for advanced GraphQL testing and vulnerability detection
A webshell manager via terminal for controlling web servers running PHP or MySQL.
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
A cybersecurity platform that offers vulnerability scanning, Windows Defender and 3rd party AV management, and MFA compliance reporting, among other features.
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.