PortSwigger / co2Links
A collection of enhancements for Portswigger's popular Burp Suite web penetration testing tool.
☆23Updated last year
Alternatives and similar repositories for co2
Users that are interested in co2 are comparing it to the libraries listed below
Sorting:
- Messy BurpSuite plugin for SQL Truncation vulnerabilities.☆63Updated 5 years ago
- Pass list of urls with FUZZ in and it will check if it has found a potential SSRF.☆109Updated 3 years ago
- Burp extension that performs a passive scan to identify cloud buckets and then test them for publicly accessible vulnerabilities☆46Updated 2 years ago
- SQLi Query Tampering extends and adds custom Payload Generator/Processor in Burp Suite's Intruder. This extension gives you the flexibil…☆156Updated 4 years ago
- Add headers to all Burp requests to bypass some WAF products☆42Updated last year
- A simple Bash one liner with aim to automate CRLF vulnerability scanning.☆69Updated 4 years ago
- Misc bounty and vulndisc things☆86Updated 4 years ago
- ☆40Updated 2 years ago
- Security test tool for Blind XSS☆26Updated 5 years ago
- Hacked together script for feeding urls into Burp's Sitemap☆93Updated 3 months ago
- All known and unknown public POC's for wordpress themes and plugins☆78Updated 4 years ago
- ☆48Updated 4 years ago
- Collection of content discovery wordlists in one wordlist.☆38Updated 3 years ago
- CVE-2020-9484 Mass Scanner, Scan a list of urls for Apache Tomcat deserialization (CVE-2020-9484) which could lead to RCE☆32Updated 5 years ago
- golang tool to scan domains or single domains with know security issues against xmlrpc☆62Updated last year
- Converts a hostname (or URI) to IP address using your local resolver☆26Updated last year
- Tool to automate recon☆43Updated 3 years ago
- ☆76Updated 4 years ago
- Automatically modify the User-Agent header in all Burp requests☆58Updated 7 years ago
- Subvenkon is a subdomain enumerator from Venkon☆23Updated 5 years ago
- A Payload Injector for bugbounties written in go☆70Updated 5 years ago
- Bug Bounty Tools☆34Updated 5 years ago
- This Repo contains wordlist for subdomain enumeration , php file path, html file path, and js file path☆103Updated 5 years ago
- My Tools For Bug Bounty☆66Updated 10 months ago
- Bucket Flaws ( S3 Bucket Mass Scanner ): A Simple Lightweight Script to Check for Common S3 Bucket Misconfigurations☆58Updated 5 years ago
- SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files☆35Updated 4 years ago
- exploit code for F5-Big-IP (CVE-2020-5902)☆43Updated 2 years ago
- Burp extension that checks application requests and responses for indicators of vulnerability or targets for attack☆41Updated 2 years ago
- It's an watcher for new scopes added to bounty-targets-data and send you alert to Slack.☆59Updated 3 years ago
- My recon script☆50Updated 5 years ago