Add headers to all Burp requests to bypass some WAF products
☆44Nov 30, 2023Updated 2 years ago
Alternatives and similar repositories for bypass-waf
Users that are interested in bypass-waf are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A Zeek package to detect CVE-2021-42292, a Microsoft Excel local privilege escalation exploit.☆18Nov 11, 2021Updated 4 years ago
- Maintaining account persistence via XSS and Oauth☆78Jan 7, 2019Updated 7 years ago
- Script to check Azure Front Door WAF for insecure RemoteAddr variable☆30Jul 11, 2025Updated 9 months ago
- pagodo (Passive Google Dork) - Automate Google Hacking Database scraping and searching☆12Jun 4, 2022Updated 3 years ago
- Utilities for creating Burp Suite Extensions.☆21Oct 31, 2024Updated last year
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Collection of offensive tools targeting Microsoft Azure☆10Jun 9, 2022Updated 3 years ago
- A BurpSuite extension for beautifying .NET message parameters and hiding some of the extra clutter that comes with .NET web apps (i.e. __…☆10Feb 13, 2017Updated 9 years ago
- Automagically decode DNS Exfiltration queries to convert Blind RCE into proper RCE via Burp Collaborator☆20Jan 7, 2026Updated 3 months ago
- ☆27Dec 20, 2022Updated 3 years ago
- Beings adaptive trigger's in GTA5☆20Jun 19, 2025Updated 10 months ago
- ☆10Jan 30, 2022Updated 4 years ago
- Check for know iframeBuster XSS☆12Sep 25, 2024Updated last year
- ☆19Oct 5, 2020Updated 5 years ago
- ☆19Nov 18, 2020Updated 5 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Terminate the eventlog thread to disable the windows eventlog☆21Apr 1, 2020Updated 6 years ago
- Default plugins for Jaeles Scanner☆36Nov 5, 2020Updated 5 years ago
- Attempts to suspend all known AV/EDRs processes on Windows using syscalls and the undocumented NtSuspendProcess API. Made with <3 for pen…☆13May 11, 2023Updated 2 years ago
- Handy scripts and one-liners to make life easier☆38Mar 6, 2023Updated 3 years ago
- XSSMaze is a web service designed to test and improve the performance of security testing tools by providing various cases of XSS vulnera…☆32Mar 31, 2026Updated last month
- SSH over websocket through Nginx reverse proxy☆23Feb 12, 2023Updated 3 years ago
- ☆10Aug 17, 2021Updated 4 years ago
- A Burp extension to show the Collaborator client in a tab☆36Dec 23, 2022Updated 3 years ago
- ***MERGED: SEE README:*** The XCCDF to InSpec parser scans and extracts the controls defined in the DISA XCCDF STIG XML documents and con…☆12Nov 23, 2018Updated 7 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A Proof-Of-Concept for the recently found CVE-2021-44228 vulnerability.☆11Nov 26, 2022Updated 3 years ago
- A regular expression fuzzer.☆45Mar 13, 2018Updated 8 years ago
- Status images for your dockerhub automated build (like those for travis)☆16Nov 9, 2018Updated 7 years ago
- A node utility to scan a domain with various techniques.☆12Sep 10, 2020Updated 5 years ago
- Starter Kit: Hardware Hacking☆16Jan 15, 2021Updated 5 years ago
- Web Application Security related tools. Includes backdoors, proof of concepts and tricks☆37Oct 21, 2014Updated 11 years ago
- A script that parses PowerView's output for GPO analysis. Integrated into bloodhound to find misconfigurations of URA, SMB signing etc☆15Feb 9, 2020Updated 6 years ago
- JSON Beautifier for Burp written in Java☆41Mar 27, 2020Updated 6 years ago
- ☆32Apr 13, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A python library for search data on shodan, google, duckduckgo☆11Sep 30, 2022Updated 3 years ago
- Burp extension to passively scan for applications revealing software version numbers☆32May 30, 2024Updated last year
- ☆16May 3, 2021Updated 5 years ago
- A Security Tool for Enumerating WebSockets☆370Jan 10, 2022Updated 4 years ago
- Bruteforce DPAPI encrypted MasterKey File from Windows Credentials Manager☆23Jan 4, 2025Updated last year
- WS-Attacker is a modular framework for web services Security penetration testing.☆12May 16, 2019Updated 6 years ago
- Apache Thrift Decoder☆35Dec 7, 2017Updated 8 years ago