PortSwigger / pentest-mapper
A Burp Suite Extension for Application Penetration Testing to map flows and vulnerabilities
☆117Updated last year
Alternatives and similar repositories for pentest-mapper:
Users that are interested in pentest-mapper are comparing it to the libraries listed below
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆119Updated last year
- Directory scans☆82Updated last year
- Check AWS S3 instances for read/write/delete access☆121Updated 3 years ago
- CVE Collection of jQuery UI XSS Payloads☆119Updated 2 years ago
- This repository stores some of my custom BCheck Scan configurations. Its goal is to identify intriguing elements that warrant further man…☆96Updated last year
- Prototype Pollution Scanner☆115Updated 4 years ago
- A projectdiscovery driven attack surface monitoring bot powered by axiom☆183Updated 2 years ago
- BChecks collection for Burp Suite Professional☆97Updated 11 months ago
- Custom scan profiles for use with Burp Suite Pro☆143Updated last year
- ☆77Updated last year
- ☆113Updated 2 years ago
- Burpsuite plugin for Interact.sh☆221Updated 10 months ago
- Golang tool which helps dropping the irrelevant entries from your ffuf result file.☆136Updated 7 months ago
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆79Updated last year
- This Burp Suite extension allows for the automatic creation and deletion of an upstream SOCKS5 proxy on popular cloud services.☆243Updated last month
- A Burp Suite Extension for pentester and bug bounty hunters an to maintain checklist, map flows, write test cases and track vulnerabiliti…☆115Updated last year
- Improve automated and semi-automated active scanning in Burp Pro☆61Updated 2 years ago
- PoC for XSS in org.webjars:swagger-ui [3.14.2, 3.36.2]☆52Updated 2 years ago
- A replacement of "qsreplace", accepts URLs as standard input, replaces all query string values with user-supplied values and stdout.☆105Updated 3 years ago
- Nuclei Templates - Here you will find the templates I use while hunting☆117Updated 3 years ago
- All Type of Payloads☆136Updated last year
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆164Updated 4 years ago
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆76Updated last year
- ☆31Updated last year
- A quick ‘n dirty nmap parser written in Golang to convert nmap xml to IP:Port notation.☆127Updated 10 months ago
- A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.☆180Updated 3 years ago
- Full Nuclei automation script with logic explanation.☆244Updated 3 years ago
- ☆154Updated 2 years ago
- 🔭 Collection of regexp pattern for security passive scanning☆114Updated 2 years ago
- Enumerate Subdomains Through Google Dorks (Bypassed Page Filter)☆123Updated last month