Damn Vulnerable API (DVAPI) is an intentionally vulnerable API application designed for learning, practicing, and testing API security concepts
CVE-2021-40438 - SSRF Exploit
Python script for the PentesterLab JWE exercise - exploits JWE vulnerabilities to gain admin access.
Boolean-based blind SQL injection via Luhn-valid credit card payloads
A SMTP user enumeration tool written in Go. This tool helps in identifying valid email addresses on an SMTP server by analyzing the server's response to RCPT, VRFY and EXPN commands.
To generate a JWT with the claim "admin", run the following command in the project directory