PortSwigger / autorizeLinks
Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease application security people work and allow them perform an automatic authorization tests
☆259Updated 9 months ago
Alternatives and similar repositories for autorize
Users that are interested in autorize are comparing it to the libraries listed below
Sorting:
- HopLa Burp Suite Extender plugin - Brings AI capabilities, autocompletion support, and a set of useful payloads to Burp Suite☆775Updated last month
- ActiveScan++ Burp Suite Plugin☆232Updated last month
- A Burp Suite extension for identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violati…☆377Updated last week
- Burp Extension for a passive scanning JS files for endpoint links.☆173Updated 6 years ago
- SSRF plugin for burp Automates SSRF Detection in all of the Request☆596Updated 4 years ago
- BChecks collection for Burp Suite Professional and Burp Suite DAST☆712Updated 2 weeks ago
- A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)☆642Updated last year
- ☆407Updated 3 years ago
- ☆215Updated this week
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆893Updated 3 years ago
- Because just a dark theme wasn't enough!☆574Updated 8 months ago
- Burp Suite Logger++: Log activities of all the tools in Burp Suite☆180Updated last year
- Burp Extension for a passive scanning JS files for endpoint links.☆793Updated last year
- Simple websites vulnerable to Server Side Template Injections(SSTI)☆401Updated 2 years ago
- Burp Extensions Api☆180Updated last month
- jsubfinder searches webpages for javascript & analyzes them for hidden subdomains and secrets (wip).☆275Updated 7 months ago
- HTTP Request Smuggling Detection Tool☆522Updated last year
- XSSMap 是一款基于 Python3 开发用于检测 XSS 漏洞的工具☆266Updated 5 years ago
- Nuclei plugin for BurpSuite☆1,287Updated last year
- A cheatsheet for exploiting server-side SVG processors.☆763Updated 5 years ago
- HackerOne "in scope" domains☆474Updated this week
- Burpsuite plugin for Interact.sh☆227Updated last year
- Domains belonging to the most reputed public bug bounty programs. [NOT FOR NON-MONETARY OR PRIVATE PROGRAMS]☆222Updated last year
- Ghostcat read file/code execute,CNVD-2020-10487(CVE-2020-1938)☆399Updated 5 years ago
- ☆99Updated 5 months ago
- essential templates for kenzer [DEPRECATED]☆116Updated 2 years ago
- Grafana Unauthorized arbitrary file reading vulnerability☆365Updated 2 years ago
- List DTDs and generate XXE payloads using those local DTDs.☆638Updated last year
- Web dashboard for Interactsh client☆227Updated 3 months ago
- HTTP file upload scanner for Burp Proxy☆413Updated 2 years ago