A collection of enhancements for Portswigger's popular Burp Suite web penetration testing tool.
☆26Mar 11, 2024Updated 2 years ago
Alternatives and similar repositories for co2
Users that are interested in co2 are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆14Feb 10, 2022Updated 4 years ago
- AWS Security Checks☆39Jan 18, 2018Updated 8 years ago
- Burp Suite plugin created for using Collaborator tool during manual testing☆19Feb 4, 2022Updated 4 years ago
- This extension provides a way to discover NoSQL injection vulnerabilities.☆11Feb 1, 2021Updated 5 years ago
- GQL Burp Extension☆21Sep 16, 2022Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Exploit laravel database config☆10Feb 10, 2019Updated 7 years ago
- ⚡ Golang library for quick make pentest tools☆16Apr 7, 2025Updated last year
- ☆15Aug 27, 2020Updated 6 years ago
- Webdav Mass Exploiter With Python Programming Language☆15Jul 19, 2025Updated last year
- CSRF Scanner Extension for Burp Suite Pro☆22Feb 4, 2022Updated 4 years ago
- This script will install all the essential bug bounty tools and will find some basic vulns. I made this script for my daily hunting. The …☆49Mar 3, 2022Updated 4 years ago
- Ultimate Package Of 50 Bug Bounty Hunting Tools☆47Oct 3, 2025Updated 11 months ago
- ☆12Jun 10, 2022Updated 4 years ago
- Burp/ZAP extension that integrate Retire.js repository to find vulnerable Javascript libraries.☆38Dec 14, 2021Updated 4 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Learn what is NoSQL injection and how to find them ?☆10Jul 22, 2021Updated 5 years ago
- Find sources and sinks in js code that could lead to DOM XSS 🔎💧🚰☆22Feb 27, 2024Updated 2 years ago
- Burp Extension for BFAC (Advanced Backup-File Artifacts Testing for Web-Applications)☆20Aug 9, 2021Updated 5 years ago
- Burp Suite extension to passively scan for applications revealing server error messages☆16Aug 15, 2023Updated 3 years ago
- An issue discovered in Telesquare TLR-2005Ksh 1.0.0 and 1.1.4 allows attackers to run arbitrary system commands via the Cmd parameter.☆17May 19, 2024Updated 2 years ago
- Google dorks for SQL injection, Local File Inclusion, open CCTV cams and sensitive information.☆11Jul 6, 2018Updated 8 years ago
- The Bi-directional Link Extractor.☆53Apr 20, 2017Updated 9 years ago
- All in one subdomain Enumeration tool☆21Jan 1, 2023Updated 3 years ago
- Broken Link Hijacking Burp Extension☆59Sep 13, 2019Updated 7 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Priv8 Tools Offensive Security WordPress_AutoExploiter☆29Apr 17, 2022Updated 4 years ago
- Have you ever faced with the lack of possibility of using NMap? For instance if you have reverse shell as an unprivileged user and there …☆33Mar 9, 2023Updated 3 years ago
- 🍭 Web Application Vulnerability Scanner 🍭☆16May 21, 2022Updated 4 years ago
- psychoPATH - hunting file uploads & LFI in the dark. This tool is a customisable payload generator designed for blindly detecting LFI & w…☆19Jun 28, 2018Updated 8 years ago
- Burp Suite extension to easily export sub domains☆45Nov 29, 2019Updated 6 years ago
- A Proof of Concept for Clickjacking Attacks☆70Jan 30, 2021Updated 5 years ago
- This is a burp intruder extender that is designed for automation and validation of XSS vulnerabilities.☆93Feb 10, 2022Updated 4 years ago
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆31Oct 21, 2025Updated 11 months ago
- Collection of things I've written on pentests to make life easier.☆16Mar 14, 2019Updated 7 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆23Apr 22, 2022Updated 4 years ago
- Blind XSS service alerting over slack or email☆30Aug 6, 2019Updated 7 years ago
- Simple shell script for automated domain recognition with some tools☆20Mar 9, 2019Updated 7 years ago
- eCPPTv2 Notes☆13Jun 13, 2021Updated 5 years ago
- ☆16Oct 24, 2018Updated 7 years ago
- Insecure Android Application for testing Biometric bypasses☆15Aug 5, 2022Updated 4 years ago
- Laravel PhpUnit Rce And Get Env Exploiter☆25Jun 30, 2019Updated 7 years ago