webhook-sentry

Egress proxy for webhooks (by juggernaut)

Webhook-sentry Alternatives

Similar projects and alternatives to webhook-sentry

NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a better webhook-sentry alternative or higher similarity.

webhook-sentry reviews and mentions

Posts with mentions or reviews of webhook-sentry. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2022-08-19.
  • Webhooks.fyi
    6 projects | news.ycombinator.com | 19 Aug 2022
    >Domains that resolve to private IPs: attacker could set up foo.com which resolves to a private IP

    There's a clever extension to this attack; a naive way to mitigate it is to do a DNS resolution first to verify it's not a private IP and then do the actual request. An attacker can simply return a public IP on the first DNS resolution (with a 0 TTY) and then return a private IP on the second. This is called a "TOCTOU" (time-of-check time-of-use) vulnerability. I've written about this and other security best practices on my blog here - https://www.ameyalokare.com/technology/webhooks/2021/05/03/s...

    I've also built an egress proxy that prevents such attacks here - https://github.com/juggernaut/webhook-sentry

    Same caveat applies, use at your own risk :-)

Stats

Basic webhook-sentry repo stats
1
51
3.1
about 1 year ago

juggernaut/webhook-sentry is an open source project licensed under Apache License 2.0 which is an OSI approved license.

The primary programming language of webhook-sentry is Go.


Sponsored
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com