PortSwigger / pentest-mapperLinks
A Burp Suite Extension for Application Penetration Testing to map flows and vulnerabilities
☆119Updated 2 years ago
Alternatives and similar repositories for pentest-mapper
Users that are interested in pentest-mapper are comparing it to the libraries listed below
Sorting:
- ☆110Updated last year
- A Burp Suite Extension for pentester and bug bounty hunters an to maintain checklist, map flows, write test cases and track vulnerabiliti…☆120Updated 2 years ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆119Updated 2 years ago
- Check AWS S3 instances for read/write/delete access☆121Updated 4 years ago
- FirebaseExploiter is a vulnerability discovery tool that discovers Firebase Database which are open and can be exploitable. Primarily bui…☆175Updated 3 years ago
- A projectdiscovery driven attack surface monitoring bot powered by axiom☆190Updated 3 years ago
- ☆160Updated 4 years ago
- Burpsuite plugin for Interact.sh☆230Updated last year
- Build your own reconnaissance system with Osmedeus Next Generation☆203Updated 3 weeks ago
- ☆175Updated 3 months ago
- CVE Collection of jQuery UI XSS Payloads☆121Updated 3 years ago
- Full Nuclei automation script with logic explanation.☆246Updated 3 years ago
- Made your bugbounty subdomains reconnaissance easier with Hunt3r the web application reconnaissance framework☆169Updated 3 years ago
- This Burp Suite extension allows for the automatic creation and deletion of an upstream SOCKS5 proxy on popular cloud services.☆246Updated 10 months ago
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆164Updated 4 years ago
- Directory scans☆85Updated last month
- A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.☆185Updated 4 years ago
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆81Updated 2 years ago
- All Type of Payloads☆141Updated last year
- Community Workflow for the Osmedeus Engine that describes basic reconnaissance methodology for you to build your own☆76Updated 2 weeks ago
- NotSoCereal: A Deserialization exploit playground☆54Updated 4 years ago
- Trickest Workflow for discovering log4j vulnerabilities and gathering the newest community payloads.☆112Updated 3 years ago
- ☆76Updated 4 years ago
- Web API for nuclei and subfinder will help you automate your entire security testing workflow since you can host it anywhere and make it …☆61Updated 3 years ago
- A burp suite extension that enumerates infrastructure and application admin interfaces (OTG-CONFIG-005)☆122Updated 3 years ago
- Prototype Pollution Scanner☆136Updated 4 years ago
- PoC for XSS in org.webjars:swagger-ui [3.14.2, 3.36.2]☆51Updated 2 years ago
- Generate tens of thousands of subdomain combinations in a matter of seconds☆273Updated 2 years ago
- Burp Suite Extension useful to verify OAUTHv2 and OpenID security☆175Updated last year
- Apache Tomcat exploit and Pentesting guide for penetration tester☆66Updated 3 years ago