瞎注修改版,新增了参数黑名单、返回包列排序、数据包内容自动匹配替换的功能
☆27Mar 19, 2025Updated last year
Alternatives and similar repositories for xia_sql_modify
Users that are interested in xia_sql_modify are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Burp条件竞争测试插件☆27Aug 21, 2025Updated 11 months ago
- XSS-Detector是一款基于多线程并发架构的Burp Suite扩展插件,通过精确请求-响应映射机制高效检测Web应用中的XSS漏洞。☆26Apr 27, 2025Updated last year
- HaE MCP集成是基于 HaE 扩展开发的智能安全分析工具。该工具通过 MCP 协议为 AI 助手提供结构化的敏感信息访问接口,实现自动化的安全数据分析和验证功能。☆21Jan 26, 2026Updated 5 months ago
- xss漏洞挖掘插件☆36Feb 6, 2025Updated last year
- Burp插件 TLA Watcher:分为两个模块:流量管理模块、扩展功能模块(脆弱风险检测)☆39Nov 13, 2025Updated 8 months ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- burpsuit插件,解析swagger/openapi接口文档并进行请求,模拟参数方便渗透测试人员快速发现可用接口 (最新使用源码编译,release有时候没空搞)☆46Oct 23, 2025Updated 8 months ago
- AutoFuzz是一款安全测试的辅助型BurpSuite插件,主要用于自动识别请求中的参数,根据预设的payload逐个发包测试,从而提高测试效率。☆116Jun 2, 2025Updated last year
- xiaSql的python魔改版☆16Oct 31, 2024Updated last year
- 一款支持检测web应用程序未授权访问缺陷的burp suite插件,可自定义配置检测字段以及返回包json数据分析☆13Apr 22, 2024Updated 2 years ago
- APIKit 是Burp Suite 的一个API接口扫描插件,该版本APIKit是对API-Security项目的APIKit1.0进行的二开,增加了扫描开关,避免直接打开burp乱扫被抓起来☆105Dec 19, 2025Updated 7 months ago
- Burp Suite HTTP traffic monitoring & management extension for security testers☆63Jun 3, 2026Updated last month
- DDDD-RED v2.0 - 红队自动化扫描工具套件,集成Masscan、Rad、dddd-red三阶段扫描,支持多线程并发、彩色输出、丰富POC库☆16Aug 27, 2025Updated 10 months ago
- 各类综合 upload_fuzz,smb_fuzz,tls绕过,被动指纹扫描☆72Jun 6, 2025Updated last year
- OneScan扩展,原项目已停更,此项目为二开项目,插件ID精简为OST☆49Updated this week
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Turacos 是一款专业的多数据库安全评估工具,支持 PostgreSQL、MySQL、Redis、MSSQL 等多种数据库的后渗透操作。 为安全研究人员提供系统化、模块化的数据库安全测试能力,助力企业进行安全评估与漏洞验证。☆83Oct 23, 2025Updated 8 months ago
- xia_Yue 插件修改版,瞎越修改版,修复中文重放乱码,添加请求行越权测试,一键导出越权url,允许重复url测试等功能☆79Jan 5, 2026Updated 6 months ago
- Struts2漏洞扫描 Burp插件☆134Mar 21, 2023Updated 3 years ago
- ByPassTamperPlus / SQLMap加强绕WAF / Code By:Tas9er☆120Feb 12, 2026Updated 5 months ago
- 将fofa quake zoomeye hunter等空间测绘聚合的小工具☆24Aug 13, 2023Updated 2 years ago
- 基于Java jxbrowser 浏览器的登录枚举测试工具 (支持验证码识别)☆13Jul 10, 2025Updated last year
- Windows、Linux持久化套件/Windows, Linux persistence suite☆21May 17, 2024Updated 2 years ago
- NoAuth 是一款用于动态生成可能绕过 Java 鉴权的 payload 并进行 fuzz 测试 的工具,主要用于在代码审计和绕鉴权场景中节省时间☆22Mar 27, 2026Updated 3 months ago
- php webshell bypass D盾、safedog、360、火绒等,仅支持php7☆18Aug 25, 2025Updated 10 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Parsing 是一个 Chrome 插件,选择ai分析当前页面的Js代码,内置提示词,不再需要单拎js。以及信息收集功能,提升渗透测试效率。☆67Jan 28, 2026Updated 5 months ago
- burp越权测试插件☆19May 15, 2026Updated 2 months ago
- SecretGuard 是一个专业的 GitHub 密钥泄露监控系统,帮助您发现和防止敏感信息泄露到 GitHub 公开仓库。☆15Nov 5, 2025Updated 8 months ago
- 瑞数VMP bypass工具,适用于burpsuite。☆75Apr 10, 2025Updated last year
- 简单的sql和xss探测burp插件☆18Jun 25, 2022Updated 4 years ago
- 基于RouteVulScan插件的小更新,添加了路由过滤功能和修复一些小bug☆14Sep 9, 2024Updated last year
- Burp插件,快速探测可能存在SQL注入的请求并标记,提高测试效率☆819Feb 26, 2026Updated 4 months ago
- 多维度,UI/UX友好的Burp suite越权漏洞检测插件☆32Updated this week
- "闪紫"(英文名shiningZ)社工字典生成工具,支持ABC自定义排列组合、ABC列字典AI扩展、AI提示词联想字典、自定义AI提示、字典去重、结果导出等☆34Oct 27, 2025Updated 8 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- websocket内存马类全版本构造样例☆17Jun 4, 2025Updated last year
- e0e1-abroad 国外项目范围收集☆38May 11, 2024Updated 2 years ago
- Cobalt Strike 4.4 猪猪版 去暗桩 去流量特征 beacon仿造真实API服务 修补CVE-2022-39197补丁☆37Apr 28, 2023Updated 3 years ago
- 针对JWT渗透开发的漏洞验证/密钥爆破工具,针对CVE-2015-9235/空白密钥/未验证签名攻击/CVE-2016-10555/CVE-2018-0114/CVE-2020-28042的结果生成用于FUZZ,也可使用字典/字符枚举(包括JJWT)的方式进行爆破(JWT …☆288Aug 12, 2025Updated 11 months ago
- 资产测绘输出xlsx表格☆14Sep 10, 2024Updated last year
- Black Hat Asia 2026 Ghost Bits payload generate tools☆62Apr 29, 2026Updated 2 months ago
- ☆41Nov 25, 2024Updated last year