FWDSEC / burp-auto-gqlLinks
A plugin for Burp Suite Pro that uses the GraphQL schema to begin Active Scanning the entire endpoint.
☆38Updated last year
Alternatives and similar repositories for burp-auto-gql
Users that are interested in burp-auto-gql are comparing it to the libraries listed below
Sorting:
- BChecks collection for Burp Suite Professional☆99Updated last year
- This repository stores some of my custom BCheck Scan configurations. Its goal is to identify intriguing elements that warrant further man…☆101Updated last year
- ☆32Updated last year
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆148Updated last year
- Extract JavaScript files from burp suite project with ease.☆93Updated 3 years ago
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆148Updated 8 months ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆120Updated 2 years ago
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆79Updated last year
- A tool for monitoring bug bounty programs across multiple platforms to track scope changes.☆26Updated last week
- For unpacking base64:ed "Save items"-content from Burp (From search + proxy history)☆54Updated 6 months ago
- Mine URLs from Browser's Heap Snapshot for fun and profit☆63Updated 2 years ago
- Golang tool which helps dropping the irrelevant entries from your ffuf result file.☆140Updated 11 months ago
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆74Updated 2 years ago
- Simplify your life with leak detection in JavaScript. NipeJS streamlines the use of regex, making it effortless to uncover potential leak…☆95Updated last year
- Identify virtual hosts by similarity comparison☆128Updated last year
- ☆89Updated 3 years ago
- web cache deception detect☆32Updated 2 weeks ago
- Improve automated and semi-automated active scanning in Burp Pro☆62Updated 3 months ago
- A path-normalization pentesting tool.☆129Updated last year
- ☆96Updated 3 years ago
- ☆63Updated 2 years ago
- ☆135Updated 9 months ago
- Results from analyzing data gathered from 1.6 billion subdomains☆31Updated 10 months ago
- A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs☆71Updated 2 months ago
- Mapping from bug bounty and vulnerability disclosure programs to respective GitHub organizations☆77Updated this week
- An MS Sharepoint and Frontpage Auditing Tool☆52Updated 9 months ago
- JSSCM detects expired domains for Stored XSS exploitation during browsing.☆49Updated 5 months ago
- Detects request smuggling via HTTP/2 downgrades.☆94Updated 3 years ago
- ☆80Updated 3 years ago
- PoC for XSS in org.webjars:swagger-ui [3.14.2, 3.36.2]☆53Updated 2 years ago