A plugin for Burp Suite Pro that uses the GraphQL schema to begin Active Scanning the entire endpoint.
☆43Jun 22, 2026Updated 2 months ago
Alternatives and similar repositories for burp-auto-gql
Users that are interested in burp-auto-gql are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- NSE Script for GraphQL Introspection Check☆26Jan 9, 2022Updated 4 years ago
- gSAST - Grep Static Analysis Security Tool☆13Mar 30, 2024Updated 2 years ago
- A Productivity-Boosting Burp Suite extension written in Kotlin that enables persistent sticky session handling in web application testing…☆15Oct 8, 2025Updated 10 months ago
- A Burp Suite extension which performs checks for cross-domain scripting against the DOM, subresource integrity checks, and evaluates Java…☆27Mar 23, 2022Updated 4 years ago
- CORS checking☆34Jul 16, 2018Updated 8 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆16Oct 24, 2018Updated 7 years ago
- dauthi is a tool that takes advantage of API functionality across a variety of MDM solutions to perform user enumeration and single-facto…☆43Apr 23, 2024Updated 2 years ago
- Custom scan profiles for use with Burp Suite Pro☆154Mar 21, 2024Updated 2 years ago
- A tool for fetching archived URLs (to be rewritten in Go).☆41Jul 19, 2018Updated 8 years ago
- AppArmor and Seccomp profiles for K8S images☆25Dec 9, 2025Updated 8 months ago
- neo4j plugin of ByteCodeDL for the IntelliJ Platform. ByteCodeDL-Neo4j-IDEA-Plugin☆15Dec 28, 2023Updated 2 years ago
- Proof-of-Concept files for vulnerabilities found by Codean Labs☆22Jun 16, 2026Updated 2 months ago
- CLI tool that extracts a regex pattern from a list of urls ( Rust )☆62Sep 14, 2022Updated 3 years ago
- NoAuth 是一款用于动态生成可能绕过 Java 鉴权的 payload 并进行 fuzz 测试的工具,主要用于在代码审计和绕鉴权场景中节省时间☆23Mar 27, 2026Updated 5 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆22Jan 11, 2025Updated last year
- Framework for blind boolean-based sql injections exploatation. Use it if sqlmap does shit.☆29Mar 26, 2022Updated 4 years ago
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆170Jul 2, 2024Updated 2 years ago
- A Swiss knife for API security testing including a docker image, some labs and resources.☆11Apr 14, 2022Updated 4 years ago
- Extract JavaScript files from burp suite project with ease.☆98Feb 19, 2022Updated 4 years ago
- An extension to use Semgrep inside Burp Suite.☆90May 23, 2025Updated last year
- Command line interface for Jsmon Security Platform☆33Jul 31, 2026Updated 3 weeks ago
- BChecks collection for Burp Suite Professional and Burp Suite DAST☆788Updated this week
- 🔍A cutting edge context aware GraphQL API fuzzing tool!☆170Aug 7, 2026Updated 3 weeks ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Incursore came from nmapAutomator to be your personal raider while you enumerate a target.☆53Jul 12, 2024Updated 2 years ago
- Exploiting XSS with Javascript/JPEG Polyglot (by @medusa_0xf)☆21Apr 8, 2022Updated 4 years ago
- ☆16Jan 9, 2025Updated last year
- CVE-2021-40438 exploit PoC with Docker setup.☆14Oct 24, 2021Updated 4 years ago
- My custom semgrep rules☆24Sep 13, 2020Updated 5 years ago
- ☆12Dec 30, 2024Updated last year
- morse mania key☆17Mar 30, 2025Updated last year
- 判断是否使用shiro的burp插件☆11Nov 11, 2020Updated 5 years ago
- in case you need a new one☆18Jan 2, 2025Updated last year
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Simple ESP32 ARP network scanner☆11Oct 11, 2025Updated 10 months ago
- 🏴☠️ Find dead-links (broken links)☆182Updated this week
- 通过爱企查和FOFA接口获取注册资本大于5000w公司的公网通用系统,方便获得CNVD证书 在搜索公网资产数量的基础上增加使用fid参数查询,结果更精准☆27Jul 13, 2024Updated 2 years ago
- BcryptMontoya is a powerful plugin for Burp Suite that allows you to effortlessly modify HTTP requests and responses passing through the …☆22Apr 27, 2026Updated 4 months ago
- ☆16Oct 14, 2022Updated 3 years ago
- ☆12Sep 15, 2024Updated last year
- ☆10May 15, 2022Updated 4 years ago