PortSwigger / auth-matrixLinks
AuthMatrix is a Burp Suite extension that provides a simple way to test authorization in web applications and web services.
☆43Updated last year
Alternatives and similar repositories for auth-matrix
Users that are interested in auth-matrix are comparing it to the libraries listed below
Sorting:
- This repo contains all the injections mentioned in my talk and enumerators.☆129Updated last year
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆164Updated 4 years ago
- The Burp extension to check JWT (JSON Web Tokens) for using keys from known from public sources☆134Updated 4 years ago
- This Burpsuite plugin allows for multiple web app testers to share their proxy history with each other in real time. Requests that comes …☆259Updated 2 years ago
- Security Testing Scripts for JWT☆316Updated 3 years ago
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆174Updated 8 months ago
- Workshop given at Hack in Paris 2019☆122Updated 2 years ago
- Burpsuite plugin for Interact.sh☆224Updated last year
- Client-Side Prototype Pollution Tools☆84Updated 3 years ago
- This repository contains various XXE labs set up for different languages and their different parsers. This may alternatively serve as a p…☆109Updated last year
- ☆93Updated last year
- Adds a customizable "Send to..."-context-menu to your BurpSuite.☆161Updated 2 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆132Updated 4 years ago
- Predict Mongo ObjectIds☆142Updated 7 years ago
- Check AWS S3 instances for read/write/delete access☆121Updated 3 years ago
- Burp Extension that copies a request and builds a FFUF skeleton☆111Updated last year
- ☆72Updated 3 years ago
- ☆180Updated last month
- ☆95Updated 3 months ago
- Workshop on Template Injection (6 exercises) covering Twig, Jinja2, Tornado, Velocity and Freemaker engines.☆128Updated 2 years ago
- Prototype pollution scanner using headless chrome☆219Updated 2 years ago
- A simple remote scanner for Atlassian Jira☆121Updated 2 years ago
- WordPress Plugin Update Confusion☆67Updated 3 years ago
- Parse OpenAPI documents into Burp Suite for automating OpenAPI-based APIs security assessments (approved by PortSwigger for inclusion in …☆200Updated last year
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.☆193Updated 11 months ago
- A Burp Suite Extension for parsing Project Files from the CLI.☆87Updated 9 months ago
- A projectdiscovery driven attack surface monitoring bot powered by axiom☆182Updated 2 years ago
- Collection of quirky behaviours of code and the CTF challenges that I made around them.☆27Updated 4 years ago
- ☆81Updated 3 years ago
- Piper Burp Suite Extender plugin☆122Updated last year