PortSwigger / paramalyzerLinks
Paramalyzer - Burp extension for parameter analysis of large-scale web application penetration tests.
☆33Updated 2 years ago
Alternatives and similar repositories for paramalyzer
Users that are interested in paramalyzer are comparing it to the libraries listed below
Sorting:
- ☆90Updated 3 years ago
- A collection of BBRF agents that can be deployed to AWS lambda☆23Updated 7 months ago
- Additional active scan checks for BURP☆27Updated 9 months ago
- A collection of utilities for building extensions using Burp's Montoya API☆50Updated last year
- Perform TE.CL HTTP Request Smuggling attacks by crafting HTTP Request automatically.☆72Updated 3 years ago
- OWASP Foundation Web Respository☆36Updated 3 years ago
- Most common AWS S3 bucket names.☆27Updated 5 years ago
- Target practice for ffuf☆67Updated 3 years ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆32Updated 4 months ago
- Dependency Confusion Security Testing Tool☆48Updated 2 years ago
- ☆30Updated last year
- A GraphQL enumeration and extraction tool☆131Updated 2 years ago
- A tool for check available dependency packages across npmjs, PyPI or RubyGems registry.☆28Updated 3 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆75Updated 2 years ago
- List all public repositories for (valid) GitHub usernames☆74Updated last year
- yataf extracts secrets and paths from files or urls - its best used against javascript files☆52Updated 10 months ago
- spk aka spritzgebaeck: A small OSINT/Recon tool to find CIDRs that belong to a specific organization.☆84Updated last month
- HazProne is a Cloud Pentesting Framework that emulates close to Real-World Scenarios by deploying Vulnerable-By-Demand AWS resources enab…☆40Updated 3 years ago
- ☆23Updated 2 years ago
- S3 bucket enumerator☆30Updated 6 years ago
- Mole is a framework for identifying and exploiting out-of-band application vulnerabilities.☆57Updated 4 years ago
- A python3 script searching for secret on swaggerhub☆65Updated 3 years ago
- ☆38Updated 4 years ago
- Simple PoC for demonstrating Race Conditions on Websockets☆55Updated last year
- Enumerate AWS permissions and resources.☆69Updated 3 years ago
- ☆21Updated 7 years ago
- ☆52Updated 5 months ago
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a p…☆30Updated 5 months ago
- cvet is a Python utility for pulling actionable vulnerabilities from cvetrends.com☆39Updated 2 years ago
- A collection of my Semgrep rules☆49Updated 2 years ago