Add headers to all Burp requests to bypass some WAF products
☆44Nov 30, 2023Updated 2 years ago
Alternatives and similar repositories for bypass-waf
Users that are interested in bypass-waf are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A Zeek package to detect CVE-2021-42292, a Microsoft Excel local privilege escalation exploit.☆18Nov 11, 2021Updated 4 years ago
- Maintaining account persistence via XSS and Oauth☆78Jan 7, 2019Updated 7 years ago
- Script to check Azure Front Door WAF for insecure RemoteAddr variable☆29Jul 11, 2025Updated 9 months ago
- pagodo (Passive Google Dork) - Automate Google Hacking Database scraping and searching☆12Jun 4, 2022Updated 3 years ago
- Utilities for creating Burp Suite Extensions.☆21Oct 31, 2024Updated last year
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting with the flexibility to host WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Cloudways by DigitalOcean.
- Collection of offensive tools targeting Microsoft Azure☆10Jun 9, 2022Updated 3 years ago
- A BurpSuite extension for beautifying .NET message parameters and hiding some of the extra clutter that comes with .NET web apps (i.e. __…☆10Feb 13, 2017Updated 9 years ago
- ☆27Dec 20, 2022Updated 3 years ago
- ☆10Jan 30, 2022Updated 4 years ago
- Burp Wiener API (Legacy)☆63Dec 1, 2023Updated 2 years ago
- Check for know iframeBuster XSS☆12Sep 25, 2024Updated last year
- ☆19Oct 5, 2020Updated 5 years ago
- ☆19Nov 18, 2020Updated 5 years ago
- Command-line tool to identify useragents that bypasses proxy restrictions☆13Oct 23, 2025Updated 5 months ago
- DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Terminate the eventlog thread to disable the windows eventlog☆21Apr 1, 2020Updated 6 years ago
- Default plugins for Jaeles Scanner☆35Nov 5, 2020Updated 5 years ago
- ☆17Nov 2, 2022Updated 3 years ago
- Attempts to suspend all known AV/EDRs processes on Windows using syscalls and the undocumented NtSuspendProcess API. Made with <3 for pen…☆13May 11, 2023Updated 2 years ago
- An OSINT tool to search for accounts by username in social networks.☆19Aug 8, 2022Updated 3 years ago
- Handy scripts and one-liners to make life easier☆37Mar 6, 2023Updated 3 years ago
- A Burp extension to show the Collaborator client in a tab☆36Dec 23, 2022Updated 3 years ago
- ***MERGED: SEE README:*** The XCCDF to InSpec parser scans and extracts the controls defined in the DISA XCCDF STIG XML documents and con…☆12Nov 23, 2018Updated 7 years ago
- A Proof-Of-Concept for the recently found CVE-2021-44228 vulnerability.☆11Nov 26, 2022Updated 3 years ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- A regular expression fuzzer.☆45Mar 13, 2018Updated 8 years ago
- Versatile tool for managing wordlists☆11Jul 15, 2021Updated 4 years ago
- A node utility to scan a domain with various techniques.☆12Sep 10, 2020Updated 5 years ago
- Starter Kit: Hardware Hacking☆16Jan 15, 2021Updated 5 years ago
- A script that parses PowerView's output for GPO analysis. Integrated into bloodhound to find misconfigurations of URA, SMB signing etc☆15Feb 9, 2020Updated 6 years ago
- Web Application Security related tools. Includes backdoors, proof of concepts and tricks☆37Oct 21, 2014Updated 11 years ago
- JSON Beautifier for Burp written in Java☆41Mar 27, 2020Updated 6 years ago
- A python library for search data on shodan, google, duckduckgo☆11Sep 30, 2022Updated 3 years ago
- Burp extension to passively scan for applications revealing software version numbers☆33May 30, 2024Updated last year
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- ☆16May 3, 2021Updated 4 years ago
- A Security Tool for Enumerating WebSockets☆369Jan 10, 2022Updated 4 years ago
- WS-Attacker is a modular framework for web services Security penetration testing.☆12May 16, 2019Updated 6 years ago
- INACTIVE - Experiment: A light-weight agent to get a port scan perspective into a useable place/format for security operations☆14Apr 10, 2023Updated 3 years ago
- Apache Thrift Decoder☆35Dec 7, 2017Updated 8 years ago
- Remove Offensive and Profane Words from Wordlists☆16Jul 27, 2023Updated 2 years ago
- Postman Integration is an extension for burp to generate Postman collection fomat json file.☆20Sep 7, 2022Updated 3 years ago