FWDSEC / burp-auto-gql
A plugin for Burp Suite Pro that uses the GraphQL schema to begin Active Scanning the entire endpoint.
☆37Updated last year
Alternatives and similar repositories for burp-auto-gql:
Users that are interested in burp-auto-gql are comparing it to the libraries listed below
- Extract JavaScript files from burp suite project with ease.☆88Updated 3 years ago
- ☆31Updated last year
- A tool for monitoring bug bounty programs across multiple platforms to track scope changes.☆24Updated this week
- For unpacking base64:ed "Save items"-content from Burp (From search + proxy history)☆50Updated 2 months ago
- BChecks collection for Burp Suite Professional☆97Updated 10 months ago
- ☆87Updated 3 years ago
- Mapping from bug bounty and vulnerability disclosure programs to respective GitHub organizations☆59Updated this week
- This repository stores some of my custom BCheck Scan configurations. Its goal is to identify intriguing elements that warrant further man…☆96Updated last year
- Prototype Pollution Scanner☆115Updated 4 years ago
- IIS shortname scanner + bruteforce☆52Updated last year
- ☆95Updated 3 years ago
- ☆62Updated 2 years ago
- A demo PHP application used to exercise SQL injection techniques in a safe, local Docker environment☆44Updated 10 months ago
- Improve automated and semi-automated active scanning in Burp Pro☆61Updated 2 years ago
- vīlicus is a bug bounty api dashboard☆40Updated last year
- Golang tool which helps dropping the irrelevant entries from your ffuf result file.☆136Updated 7 months ago
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆134Updated 4 months ago
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆75Updated last year
- ☆154Updated 2 years ago
- Scans remote JavaScript files with Trufflehog + Semgrep to detect leaked secrets☆56Updated 3 months ago
- Identify virtual hosts by similarity comparison☆119Updated 8 months ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆119Updated last year
- A replacement of "qsreplace", accepts URLs as standard input, replaces all query string values with user-supplied values and stdout.☆105Updated 3 years ago
- A path-normalization pentesting tool.☆126Updated last year
- PoC for XSS in org.webjars:swagger-ui [3.14.2, 3.36.2]☆52Updated 2 years ago
- A Go tool that gets the newest PRs from projectdiscovery/nuclei-templates.☆54Updated last year
- Burp-suite Extension For finding .map files☆46Updated last year
- Burp extension to check and exploit the IIS Tilde Enumeration/IIS 8.3 Short Filename Disclosure vulnerability☆59Updated last year
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆62Updated last year
- nuclei-bb-templates☆49Updated 2 years ago