NetSPI / Burp-ExtensionsLinks
Central Repo for Burp extensions
☆151Updated 3 years ago
Alternatives and similar repositories for Burp-Extensions
Users that are interested in Burp-Extensions are comparing it to the libraries listed below
Sorting:
- YSOSERIAL Integration with burp suite☆165Updated 2 years ago
- Java serialization brute force attack tool.☆123Updated 7 years ago
- Takes a URL and checks the system for the tilde enum vuln and then find the files.☆171Updated 6 years ago
- Java deserialization exploitation lab.☆235Updated 6 years ago
- XXE Out of Band Server.☆170Updated last year
- CVE-2018-7600 - Drupal 7.x RCE☆72Updated 7 years ago
- ZAP/Burp plugin that generate script to reproduce a specific HTTP request (Intended for fuzzing or scripted attacks)☆291Updated 2 years ago
- A Burp Extension to test applications for vulnerability to the Web Cache Deception attack☆139Updated 4 years ago
- ☆231Updated 9 years ago
- An interactive OOB XXE data exfiltration tool☆90Updated 8 years ago
- Burp Suite plugin created for using Collaborator tool during manual testing in a comfortable way!☆103Updated 7 years ago
- Burp Suite Extensions☆127Updated 11 years ago
- GUI Burp Plugin to ease discovering of security holes in web applications☆150Updated 8 years ago
- (Deprecated) HQLmap, Automatic tool to exploit HQL injections☆230Updated 5 years ago
- A collection of enhancements for Portswigger's popular Burp Suite web penetration testing tool.☆152Updated last year
- Jsdir is a Burp Suite extension that extracts hidden paths from js files and beautifies it for further reading.☆118Updated 4 years ago
- CVE-2018-7600 Drupal RCE☆116Updated 7 years ago
- Mogwai Java Management Extensions (JMX) Exploitation Toolkit☆173Updated 8 years ago
- Script to test if a server is vulnerable to the JetLeak vulnerability☆144Updated 8 years ago
- An Out-of-Band XXE server for retrieving file contents over FTP.☆181Updated 5 years ago
- WebLogic Exploit☆142Updated 6 years ago
- Oracle WebLogic WLS-WSAT Remote Code Execution Exploit (CVE-2017-10271)☆127Updated 2 years ago
- Bash script that tests if a system is Winshock (MS14-066) vulnerable☆100Updated 10 years ago
- CVE-2018-2893-PoC☆103Updated 6 years ago
- RCE on Apache Solr using deserialization of untrusted data via jmx.serviceUrl☆210Updated 6 years ago
- poison and relay NTLM credentials☆175Updated 6 years ago
- Security checks pack for Burp Suite☆138Updated 7 years ago
- Repository to hold materials for DefCon_RESTing presentation by Dinis, Abe and Alvaro☆53Updated 11 years ago
- Script to test for Cisco ASA path traversal vulnerability (CVE-2018-0296) and extract system information.☆203Updated last year
- XSS Fuzzer is a tool which generates XSS payloads based on user-defined vectors and fuzzing lists.☆141Updated 6 years ago