Browse BugSnaps
Find the page you need.
Every public guide, comparison, use case and service in one place. Search engines can also use our XML sitemap.
Open the XML sitemap
Product, services and company
Security guides
- Security guides
- BOLA testing: verify object ownership in APIs
- Access control testing with a role and action matrix
- XSS testing: trace untrusted input to browser output
- SQL injection testing and evidence quality
- SSRF testing for URL fetching features
- GraphQL security testing beyond endpoint discovery
- Use OpenAPI to plan API security testing
- CORS security testing: verify browser data access
- Security header testing with application context
- Content Security Policy: assess and roll out CSP
- Exposed secrets: validate, contain, and remediate
- Session security testing from login to logout
- Authentication security testing across account journeys
- CSRF testing for authenticated browser actions
- File upload security testing through storage and download
- Password reset security from request to recovery
- API rate limiting: assess abuse and resource controls
- SaaS tenant isolation testing across shared services
- Business logic testing with state and invariants
- Penetration test scope and authorization checklist
- What a useful security testing report should contain
- Remediation and retesting: verify the security behavior
- Automated vs manual security testing: choose useful coverage
- Build an attack surface inventory for security testing
Testing use cases
- Security testing use cases
- Security testing for SaaS applications
- Security testing for ecommerce websites
- Security testing for fintech applications
- Security testing for healthcare applications
- Security testing before a startup launch
- Security testing for development agencies
- Security testing for multi-tenant applications
- Security testing for REST APIs
- Security testing for GraphQL APIs
- Security testing for release validation
- Security testing for authenticated applications
- Security testing for small engineering teams
Comparisons and alternatives
- Compare
- Mypentest Vs Vulnerability Scanners
- Bugsnaps Vs Traditional Pentest
- Automated Vs Manual Penetration Testing
- MyPentest vs Strix
- MyPentest vs XBOW
- MyPentest vs Astra Security
- MyPentest vs Intruder
- MyPentest vs Pentest-Tools.com
- MyPentest vs Burp Suite
- MyPentest vs ZAP
- MyPentest vs Nuclei
- MyPentest vs StackHawk
- MyPentest vs Invicti
- MyPentest vs Detectify
- MyPentest vs Qualys WAS
- MyPentest vs Rapid7 InsightAppSec
- MyPentest vs Snyk
- MyPentest vs HCL AppScan
- Security tool alternatives
- Strix Alternatives: Choose by Testing Workflow
- XBOW Alternatives: Choose by Testing Workflow
- Astra Security Alternatives: Choose by Testing Workflow
- Intruder Alternatives: Choose by Testing Workflow
- Pentest-Tools.com Alternatives: Choose by Testing Workflow
- Burp Suite Alternatives: Choose by Testing Workflow
- ZAP Alternatives: Choose by Testing Workflow
- Nuclei Alternatives: Choose by Testing Workflow
- StackHawk Alternatives: Choose by Testing Workflow
- Invicti Alternatives: Choose by Testing Workflow
- Detectify Alternatives: Choose by Testing Workflow
- Qualys WAS Alternatives: Choose by Testing Workflow
- Rapid7 InsightAppSec Alternatives: Choose by Testing Workflow
- Snyk Alternatives: Choose by Testing Workflow
- HCL AppScan Alternatives: Choose by Testing Workflow