a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to spot authentication/authorization issues, and converts Http requests to Javascript for further XSS exploitation.
☆31Oct 21, 2025Updated 9 months ago
Alternatives and similar repositories for agartha
Users that are interested in agartha are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A Burp extension to Fuzz URLs for HTTP parser inconsistencies☆15Jan 9, 2024Updated 2 years ago
- This mod is used for duplication exploit in Minecraft.☆12Oct 8, 2024Updated last year
- This extension provides a way to discover NoSQL injection vulnerabilities.☆11Feb 1, 2021Updated 5 years ago
- c# based port scanner with some common options to scan machines and ports. Couldf be good when stuck inside a windows internal network.☆10Apr 12, 2022Updated 4 years ago
- A burp-suite plugin that extract all parameter names from in-scope requests☆30Nov 9, 2021Updated 4 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- Automating SQL Injection in a list of URLs or Request Files☆12Aug 8, 2016Updated 9 years ago
- Used to AES encrypt shellcode, can take password or use built in default should be used with Iron Injector to generate and execute shellc…☆15Mar 18, 2022Updated 4 years ago
- Burp Extension for testing authorization issues. Automated request repeating and parameter value extraction on the fly.☆222Nov 4, 2025Updated 8 months ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆14Feb 10, 2022Updated 4 years ago
- Sensitive Discoverer, a Burp extension to discovers sensitive information inside HTTP messages.☆52Jan 26, 2026Updated 5 months ago
- Introduction to CYS4-SensitiveDiscoverer, a Burp extension that discovers sensitive information inside HTTP messages.☆24Nov 26, 2024Updated last year
- Small tool to scan On-Premises Exchange servers, useful for analytical purposes and patch management☆20Aug 28, 2022Updated 3 years ago
- Scripts that automate portions of pentests.☆59Updated this week
- A steganography based shellcode hider to bypass AV☆18Aug 7, 2022Updated 3 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Spring Boot whitelabel error page SpEL rce EXP☆13May 24, 2024Updated 2 years ago
- Fuzz WebSockets with custom Python code☆20Aug 21, 2024Updated last year
- burp suite插件☆14Jul 9, 2023Updated 3 years ago
- The Ultimate File Upload Bypass Generator☆15Nov 24, 2025Updated 8 months ago
- ☆13Apr 15, 2024Updated 2 years ago
- CSRF Scanner Extension for Burp Suite Pro☆21Feb 4, 2022Updated 4 years ago
- 本项目是一个插件项目,用于演示插件的使用方法 快速打造自己的谷歌插件该项目使用 vue2.0 + webpack4.0 + less + es6 + vue-router + vuex + axios + element-ui + chrome-plugin 等其他插件开发…☆13Oct 18, 2023Updated 2 years ago
- A simple script that edits the XML of a macro-enabled Word document (.docm or Word 97 document) to add a reference to a remote stylesheet…☆11Oct 5, 2022Updated 3 years ago
- A collection of enhancements for Portswigger's popular Burp Suite web penetration testing tool.☆25Mar 11, 2024Updated 2 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- Deploy a SOCKS5 proxy in DigitalOcean and autoconfigure the Burp proxy settings to route all traffic through the droplet☆57Oct 23, 2024Updated last year
- ☆25Dec 13, 2024Updated last year
- ☆44Mar 13, 2023Updated 3 years ago
- The Mobile Security Testing Guide (MSTG) is a comprehensive manual for mobile app security development, testing and reverse engineering.☆11Apr 6, 2020Updated 6 years ago
- 使用java编写的CRLF-Injection-burp被动扫描插件☆46Dec 20, 2022Updated 3 years ago
- This repository contains a number of insecure self-hosted applications that allows interested security engineers to test vulnerabilities …☆26Apr 30, 2025Updated last year
- 红队自动化打点神器!!! ARL使用代理池联动nuclei,xray并通过企业微信机器人告警。☆26Sep 29, 2024Updated last year
- Burp Suite Extension for inserting a magic byte into responder's request☆26Sep 22, 2023Updated 2 years ago
- ☆29Jan 9, 2023Updated 3 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- I was searching for such resource to work as cheat sheet series and guide me through different attack scenarios for API attacks, didn’t f…☆15May 5, 2025Updated last year
- A Burp extension to detect and exploit versions of Telerik Web UI vulnerable to CVE-2017-9248.☆97Aug 14, 2018Updated 7 years ago
- iOS Reverse Tools☆48Dec 28, 2016Updated 9 years ago
- Bugbounty utility to store list of enumerated subdomains into an sqlite3 db [one liner style / Pipe and save]☆29Jan 6, 2021Updated 5 years ago
- psychoPATH - hunting file uploads & LFI in the dark. This tool is a customisable payload generator designed for blindly detecting LFI & w…☆19Jun 28, 2018Updated 8 years ago
- Sparty - MS Sharepoint and Frontpage Auditing Tool☆34Aug 4, 2014Updated 11 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆133Feb 19, 2021Updated 5 years ago