#
dast
Here are 10 public repositories matching this topic...
A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestration
-
Updated
Jun 7, 2020 - HTML
The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters
-
Updated
Feb 8, 2019 - Java
The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters
-
Updated
Mar 8, 2019 - Java
Vulnerability consolidation and management tool, enhances scan results by merging different findings of the same weakness across multiple static/dynamic scans
-
Updated
Apr 13, 2019 - Java
Gitbook
security-audit
application-security
appsec
security-automation
dependency-checker
sast
dast
security-assesment
-
Updated
Jun 1, 2020
Improve this page
Add a description, image, and links to the dast topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the dast topic, visit your repo's landing page and select "manage topics."
The rule would raise info alerts for each script it found along with the integrety hash, as per
https://developer.mozilla.org/en-US/docs/Web/Security/Subresource_Integrity
This could just work on URLs that are in scope - it would just be useful when you're trying to create a CSP for a specific site.