FWDSEC / burp-auto-gql
A plugin for Burp Suite Pro that uses the GraphQL schema to begin Active Scanning the entire endpoint.
☆30Updated 10 months ago
Related projects ⓘ
Alternatives and complementary repositories for burp-auto-gql
- An MS Sharepoint and Frontpage Auditing Tool☆44Updated 3 years ago
- ☆55Updated last year
- For unpacking base64:ed "Save items"-content from Burp (From search + proxy history)☆51Updated last year
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆78Updated last year
- Mapping from bug bounty and vulnerability disclosure programs to respective GitHub organizations☆51Updated this week
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆68Updated 10 months ago
- vīlicus is a bug bounty api dashboard☆39Updated last year
- ☆52Updated 6 months ago
- IIS shortname scanner + bruteforce☆47Updated 8 months ago
- Simple Django to show post-exploitation options when server-side template injection (SSTI) is present in app using Django Templates.☆15Updated 3 years ago
- Improve automated and semi-automated active scanning in Burp Pro☆60Updated 2 years ago
- Extract JavaScript files from burp suite project with ease.☆78Updated 2 years ago
- BChecks collection for Burp Suite Professional☆81Updated 5 months ago
- Burp-suite Extension For finding .map files☆41Updated 10 months ago
- Custom scan profiles for use with Burp Suite Pro☆105Updated 7 months ago
- ☆32Updated 10 months ago
- ☆88Updated 3 years ago
- Prototype Pollution Scanner☆101Updated 3 years ago
- Golang tool which helps dropping the irrelevant entries from your ffuf result file.☆128Updated last month
- Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE☆52Updated 2 weeks ago
- Create your own recon & vulnerability scanner with Trickest and GitHub☆49Updated last year
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆54Updated last year
- Identify virtual hosts by similarity comparison☆116Updated 3 months ago
- Some of the gf patterns which i use☆38Updated 2 years ago
- A tool to guess the rest of the shortnames provided by vulnerable IIS instances.☆34Updated last year
- A demo PHP application used to exercise SQL injection techniques in a safe, local Docker environment☆39Updated 5 months ago
- Burp extension to check and exploit the IIS Tilde Enumeration/IIS 8.3 Short Filename Disclosure vulnerability☆55Updated last year
- A Go tool that gets the newest PRs from projectdiscovery/nuclei-templates.☆53Updated last year