SQLMap-FluX 是针对sql注入的改造版本。本项目核心在于通过重构工具的静态特征、逻辑载荷以及交互行为,使其能够模拟拟人化的访问模式,从而在渗透测试中,有效检测并绕过现代Web应用防火墙的特征识别与频率检测。
☆46Mar 11, 2026Updated 6 months ago
Alternatives and similar repositories for Sqlmap-FluX
Users that are interested in Sqlmap-FluX are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- 在ShiroAttack2基础上增加 Header 长度绕过、分块、短 Payload等功能☆102Apr 14, 2026Updated 5 months ago
- Shiro反序列化漏洞一站式综合利用工具☆172Jan 22, 2026Updated 8 months ago
- ByPassTamperPlus / SQLMap加强绕WAF / Code By:Tas9er☆121Feb 12, 2026Updated 7 months ago
- SwordfishSuite - Web安全测试利器 一款轻量、高速、插件化的现代Web安全测试工具,专为安全研究员和渗透测试者打造。 ✨ 核心特性: 智能代理:无缝拦截与修改HTTP/S请求,流畅度超越BurpSuite。 高度集成:集成云端虚拟手机,快速定位AP…☆90Apr 10, 2026Updated 5 months ago
- ☆29Apr 2, 2026Updated 6 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- 一款支持 目录扫描(可配合熊猫头)+自动绕403+敏感匹配 等的小脚本工具,目前此脚本属于创始测试版,后续会继续升级!!!CowCow🐂🐂☆17Dec 27, 2024Updated last year
- Yscan 是一款集 Web 资产扫描、图形化 Nuclei POC 管理、漏洞验证与数据整理于一体的实战型安全工具,界面简洁,功能强大,助你快速识别互联网暴露面中的薄弱点与攻击面。☆102Apr 2, 2026Updated 6 months ago
- 各类综合 upload_fuzz,smb_fuzz,tls绕过,被动指纹扫描☆72Jun 6, 2025Updated last year
- OneScan扩展,原项目已停更,此项目为二开项目,插件ID精简为OST☆56Sep 3, 2026Updated last month
- 幽狼AI Shell:首款支持AI渗透的高级WebShell & C2管理工具,内置WebShell MCP服务器,支持多层内网级联的ASPX、ASHX高级WebShell管理工具,AES加密通信,无需代理,内存加载渗透工具,无文件落地隐蔽渗透目标,动态代码执行,Shell…☆276Aug 16, 2026Updated last month
- 用于提取Webpack打包的未加载的JavaScript文件,并扫描这些文件以查找敏感信息。☆41Sep 17, 2025Updated last year
- 一款针对K8s综合利用GUI工具☆186Apr 26, 2026Updated 5 months ago
- 这是一个全面的Web应用安全扫描工具,专注于检测XSS(跨站脚本)漏洞,同时也能够发现其他类型的Web安全漏洞。该工具支持多种扫描模式、不同级别的有效载荷和详细的漏洞报告。☆19Mar 9, 2025Updated last year
- Burp插件 TLA Watcher:分为两个模块:流量管理模块、扩展功能模块(脆弱风险检测)☆39Nov 13, 2025Updated 10 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Muki is an active asset fingerprinting tool built for red teams — powered by 30,000+ precision signatures, proxy rotation, and intelligen…☆116Jan 13, 2026Updated 8 months ago
- JeecgBoot Go版本综合漏洞检测工具☆105Feb 24, 2026Updated 7 months ago
- 基于 ARL 深度扩展与持续优化的互联网资产自动化收集平台,面向资产发现、暴露面梳理、风险排查与 持续监测等场景,提供域名识别、子域名发现、测绘引擎查询、端口与服务识别、指纹分析、URL 提取、漏洞检测、计划任务与结果汇总等能力 系统适用于乙方专业安全厂商、甲方安全运维部门开…☆120Sep 17, 2026Updated 2 weeks ago
- ☆121Jun 17, 2026Updated 3 months ago
- MPET (Multi-Protocol Exploitation Toolkit) 是一款专业的多协议安全测试工具,基于 Wails 框架构建的现代化桌面应用。它提供了对 25+ 种主流服务协议的连接测试、未授权访问检测、弱口令检测和漏洞利用能力,是安全研究人员和渗透测试…☆225Jan 22, 2026Updated 8 months ago
- Directory Traversal Scanner 是一个高性能的目录遍历漏洞扫描工具,专门用于检测和验证 Web 应用程序中的路径遍历漏洞。通过异步并发扫描和智能 WAF 绕过技术,帮助安全研究人员快速发现潜在的安全隐患。Directory Traversal Sca…☆33Mar 28, 2025Updated last year
- Argus 取名自希腊神话中的"百眼巨人" (Argus Panoptes)这是一款专为应急响应、威胁狩猎设计的现代化跨平台安全工具,致力于提供更隐蔽、更强大、更智能的威胁检测能力。☆32May 9, 2026Updated 4 months ago
- 掘地三尺(DigDeep):覆盖云安全 、小程序、APP、web等常见敏感信息泄露类型,一键挖掘源码中的密码/密钥/手机号/身份证/云服务AK、SK等近百类敏感数据。☆95Apr 12, 2026Updated 5 months ago
- 一个新的安全服务工具集☆45Updated this week
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- burp越权测试插件☆21Sep 3, 2026Updated last month
- APIKit 是Burp Suite 的一个API接口扫描插件,该版本APIKit是对API-Security项目的APIKit1.0进行的二开,增加了扫描开关,避免直接打开burp乱扫被抓起来☆107Dec 19, 2025Updated 9 months ago
- S-XIASQL 是一款专业的 Burp Suite SQL注入检测插件,能够自动化检测Web应用中的SQL注入漏洞。通过智能分析HTTP请求响应,快速识别潜在的SQL注入点,大幅提升渗透测试效率。☆101Mar 16, 2026Updated 6 months ago
- Hengge team develops JavaScript specifically for loading Webpack for batch reading☆335Jun 11, 2026Updated 3 months ago
- FLUX 是一款专业的Web安全扫描工具,JS敏感信息收集、API端点提取、API文档解析、页面爬取、子域名发现、漏洞测试、WAF检测与绕过、JS代码分析等功能。☆248May 6, 2026Updated 4 months ago
- Professional file upload vulnerability testing tool with 263+ bypass techniques, proxy capture, dynamic scanning(专业的文件上传漏洞检测工具,支持263+绕过技术…☆254Aug 16, 2026Updated last month
- RVScan 是一个功能强大的 Burp Suite 扩展插件,专为自动化Web应用程序安全测试和漏洞扫描而设计。它提供全面的路径发现、绕过技术、EHole指纹识别和可定制的扫描规则。☆203May 6, 2026Updated 4 months ago
- URLReplayer是一个burp插件, 一个用于自动化 API 接口提取、参数解析及批量验证 的 Burp Suite 插件。旨在从 HTTP 响应中快速挖掘未公开的 API 端点并进行有效性测试。☆44Jan 15, 2026Updated 8 months ago
- ☆76Sep 10, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- 二开xiasql☆66Jan 8, 2026Updated 8 months ago
- 一个用 Python + PyQt5 写的图形化未授权访问漏洞扫描器,支持检测 40+种 常见服务的未授权漏洞,GUI框架 PyQt5。☆21Apr 5, 2026Updated 5 months ago
- NSFOCUS API_Sword:A Burp Suite extension, Automatically recursively collect API endpoints from any response☆419Jan 20, 2026Updated 8 months ago
- 多接口MD5解密PHP版☆16Jan 1, 2025Updated last year
- MPScan 是一款为安全研究人员与开发者设计的 Windows GUI 一体化工具,专用于对微信小程序进行自动化安全审计。☆305Aug 11, 2026Updated last month
- api接口测试工具,包括swagger文档,asp接口文档,wsdl接口,wadl接口,一键自动跑接口☆180Mar 30, 2026Updated 6 months ago
- FastBurp 是一款专为网络安全测试和Web开发设计的浏览器扩展工具。它通过利用Chrome浏览器的原生调试API,实现了无需额外安装证书进行HTTPS流量拦截、修改和重放,并结合AI技术提供智能化的安全分析功能。☆304May 9, 2026Updated 4 months ago