PortSwigger / httpoxy-scanner
A Burp Suite extension that checks for the HTTPoxy vulnerability.
☆90Updated 3 years ago
Alternatives and similar repositories for httpoxy-scanner:
Users that are interested in httpoxy-scanner are comparing it to the libraries listed below
- Evenly distributes scanner load across targets☆82Updated 2 years ago
- A Burp Extension to test applications for vulnerability to the Web Cache Deception attack☆136Updated 3 years ago
- Dirbuster plugin for Burp Suite☆70Updated 7 years ago
- Simple Server Side Request Forgery services enumeration tool.☆54Updated 6 years ago
- A collection of enhancements for Portswigger's popular Burp Suite web penetration testing tool.☆151Updated 10 months ago
- Burp Suite extension to passively scan for applications revealing server error messages☆66Updated last year
- XSS Hunter Burp Plugin☆149Updated 6 years ago
- An interactive OOB XXE data exfiltration tool☆91Updated 7 years ago
- Local File Inclusion Exploitation Tool (mirror)☆124Updated 7 years ago
- Ruby command-line interface to Burp Suite's REST API☆59Updated 4 years ago
- A collection of scripts to extend Burp Suite☆139Updated 5 years ago
- A Burp extension to show the Collaborator client in a tab☆36Updated 2 years ago
- Tool for exploiting SQL injection vulnerabilities that sqlmap can't find.☆96Updated 6 years ago
- Asynchronous wordlist based DKIM scanner☆58Updated 3 years ago
- Burp Bounty is a extension of Burp Suite that improve an active and passive scanner by yourself. This extension requires Burp Suite Pro.☆70Updated 2 years ago
- Brute forcing jwt tokens signed with HS256 since 2014☆58Updated 6 years ago
- ☆41Updated 4 years ago
- A tool that can take a URL or list of URL and prints back SAML consume URL.☆36Updated 5 years ago
- subdomain bruteforce list☆100Updated 3 months ago
- An implementation of NSA's ExplodingCan exploit in Python☆261Updated 7 years ago
- XIP generates a list of IP addresses by applying a set of transformations used to bypass security measures e.g. blacklist filtering, WAF,…☆75Updated 6 years ago
- BlindRef serves as the basis for an automated Blind-Based XXE Exploitation Framework☆26Updated 7 years ago
- A tool used to check if a CNAME resolves to the scope address. If the CNAME resolves to a non-scope address it might be worth checking ou…☆133Updated last year
- Burp Suite plugin created for using Collaborator tool during manual testing☆19Updated 2 years ago
- Burp Suite extension to track vulnerability assessment progress☆59Updated 4 years ago
- ☆77Updated 9 years ago
- SQLiPy is a Python plugin for Burp Suite that integrates SQLMap using the SQLMap API.☆254Updated 6 months ago
- Resolve and quickly portscan a list of (sub)domains.☆86Updated 8 years ago
- GodOfWar - Malicious Java WAR builder with built-in payloads☆120Updated 5 years ago
- Collection of scripts that aid in penetration testing of JSON Web Tokens☆58Updated 5 years ago