Moein Fatehi's repositories

Backup-Finder

A burp suite extension that reviews backup, old, temporary and unreferenced files on web server for sensitive information (OWASP WSTG-CONF-04, OTG-CONFIG-004)

Language:JavaLicense:GPL-3.0Stargazers:148Issues:1Issues:2

Admin-Panel_Finder

A burp suite extension that enumerates infrastructure and application admin interfaces (OTG-CONFIG-005)

Language:JavaLicense:GPL-3.0Stargazers:116Issues:6Issues:4

xss_vulnerability_challenges

this repository is a docker containing some "XSS vulnerability" challenges and bypass examples.

file_upload_vulnerability_scenarios

This repository is a dockerized PHP application containing some file upload vulnerability challenges (scenarios).

lfi-to-rce-scenario

This repository is a Dockerized php application containing a LFI (Local File Inclusion) vulnerability which can lead to RCE (Remote Code Execution).

Language:PHPStargazers:8Issues:1Issues:0

Awesome-Smart-Contract-Security

Your go-to resource for all things Smart Contract Security. Featuring guidelines, best practices, and in-depth articles. Sections include: Vulnerabilities (SWC, OWASP Top 10), Learning Resources (Papers, Blogs, Courses), Tools & Libraries, and Architecture (Smart Contract Platforms, Languages). Stay secure with the latest updates!

License:MITStargazers:4Issues:1Issues:0

CVSS_Calculator

CVSS Calculator - a burp suite extension for calculating CVSS v2 and v3.1 scores of vulnerabilities.

Language:JavaLicense:GPL-3.0Stargazers:4Issues:1Issues:1

moeinfatehi

Award‑Winning Application Security Specialist, Blockchain Security Researcher

captcha_logical_bypass_scenarios

This repository is a dockerized PHP application containing some captcha logical bypass challenges (scenarios).

Language:PHPStargazers:2Issues:1Issues:0

PassiveDigger

Optimize your web vulnerability assessments with PassiveDigger, a comprehensive Burp Suite extension that specializes in passive traffic analysis. Detect potential vulnerabilities, get actionable insights, and supercharge your security audits.

Language:JavaLicense:MITStargazers:2Issues:1Issues:0

rfi_vulnerability_scenarios

Collection of RFI Vulnerability scenarios (challenges) each containing a new bypass technique.

Language:PHPStargazers:1Issues:1Issues:0
License:NOASSERTIONStargazers:0Issues:0Issues:0
Language:PythonLicense:GPL-3.0Stargazers:0Issues:0Issues:0

price

Live Price Chart for Crypto, Forex and stocks by tradingview

Language:HTMLStargazers:0Issues:1Issues:0

CosmosChainSecurity

A comprehensive resource for securing Cosmos-based blockchain networks, focusing on best practices, case studies, and strategies to protect decentralized exchanges like Osmosis. This repository aims to be an essential guide for developers, security professionals, and blockchain enthusiasts.

License:MITStargazers:0Issues:0Issues:0

LinuxForCyberSecurityCourse

Comprehensive course materials for 'Linux for Cyber Security', covering everything from basic Linux fundamentals to advanced security practices. Includes lectures, assignments, scripts, and additional resources aimed at equipping students with the skills needed to use Linux effectively in cybersecurity roles.

License:GPL-3.0Stargazers:0Issues:0Issues:0

python-postgres-docker

A dockerized python app connected to postgresql with initialized sql script, managed with docker-compose and dockerfile

Language:PythonStargazers:0Issues:1Issues:0

python_time_extended

This repo contains extended time functions for python

Language:PythonStargazers:0Issues:1Issues:0

slither

Static Analyzer for Solidity

Language:PythonLicense:AGPL-3.0Stargazers:0Issues:0Issues:0

solidity-dev-environment-ubuntu

Setup Local Solidity Smart Contract Development Environment on Ubuntu 22

Stargazers:0Issues:1Issues:0

solidity-security-blog

Comprehensive list of known attack vectors and common anti-patterns

License:NOASSERTIONStargazers:0Issues:0Issues:0

SWC-registry

Smart Contract Weakness Classification and Test Cases

Language:SolidityLicense:MITStargazers:0Issues:0Issues:0

telegram_music_upload_bash

bash shell script that extracts the metadata of the music from the file and uploads the music+metadata details to telegram chat

Language:ShellStargazers:0Issues:1Issues:0