Skip to content

Ankush12389/tests-library

 
 

Repository files navigation

Akto.io API Security

Akto Tests Library

Nuclei Templates

Currently tests-library supports Nuclei test templates.

Java Templates

The Java templates present in the directory are copied directly from Akto's in-built tests here. They have been added just for completeness purposes. If you wish to contribute to these tests, we suggest you contribute in the community-edition repo directly.

Wordlists

The wordlists in this repo might or might not be used by templates here. If you find a good wordlist, you can easily make your own template by following this example

References

We request yout o mention any references that helped you in creating that template - test logic, wordlist, idea etc.

What is Akto?

How it worksGetting-StartedAPI InventoryAPI testingAdd TestJoin Slack community

Akto is a plug-n-play API security platform that takes only 60 secs to get started. Akto is used by security teams to maintain a continuous inventory of APIs, test APIs for vulnerabilities and find runtime issues. Akto offers tests for all OWASP top 10 and HackerOne Top 10 categories including BOLA, authentication, SSRF, XSS, security configurations, etc. Akto's powerful testing engine runs variety of business logic tests by reading traffic data to understand API traffic pattern leading to reduced false positives. Akto can integrate with multiple traffic sources - burpsuite, AWS, postman, GCP, gateways, etc.

Akto enables security and engineering teams to secure their APIs by doing three things:

  1. API inventory
  2. Run business logic tests in CI/CD
  3. Find vulnerabilities in run-time

How it works?

Step 1: Create inventory

Step 2: Run tests

How to get Started?

Local deploy:

Run this script to create Akto at ~/akto and run the docker containers. You'll need to have Docker installed in order to run the container.

/bin/bash -c "$(curl -fsSL https://raw.githubusercontent.com/akto-api-security/infra/feature/self_hosting/cf-deploy-akto)"

License

This project is licensed under the MIT License.

About

No description, website, or topics provided.

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages

  • Java 100.0%