PortSwigger / pentest-mapperLinks
A Burp Suite Extension for Application Penetration Testing to map flows and vulnerabilities
☆120Updated last year
Alternatives and similar repositories for pentest-mapper
Users that are interested in pentest-mapper are comparing it to the libraries listed below
Sorting:
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆120Updated 2 years ago
- A Burp Suite Extension for pentester and bug bounty hunters an to maintain checklist, map flows, write test cases and track vulnerabiliti…☆118Updated 2 years ago
- Check AWS S3 instances for read/write/delete access☆121Updated 3 years ago
- ☆157Updated 3 years ago
- A projectdiscovery driven attack surface monitoring bot powered by axiom☆190Updated 3 years ago
- FirebaseExploiter is a vulnerability discovery tool that discovers Firebase Database which are open and can be exploitable. Primarily bui…☆165Updated 2 years ago
- Burpsuite plugin for Interact.sh☆227Updated last year
- Build your own reconnaissance system with Osmedeus Next Generation☆197Updated last month
- ☆106Updated last year
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆75Updated 2 years ago
- Prototype Pollution Scanner☆126Updated 4 years ago
- 🔭 Collection of regexp pattern for security passive scanning☆117Updated 2 years ago
- CVE Collection of jQuery UI XSS Payloads☆118Updated 2 years ago
- This Burp Suite extension allows for the automatic creation and deletion of an upstream SOCKS5 proxy on popular cloud services.☆245Updated 6 months ago
- Full Nuclei automation script with logic explanation.☆245Updated 3 years ago
- Improve automated and semi-automated active scanning in Burp Pro☆62Updated 4 months ago
- Directory scans☆83Updated last year
- Web API for nuclei and subfinder will help you automate your entire security testing workflow since you can host it anywhere and make it …☆60Updated 3 years ago
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆164Updated 4 years ago
- Community Workflow for the Osmedeus Engine that describes basic reconnaissance methodology for you to build your own☆75Updated last year
- Made your bugbounty subdomains reconnaissance easier with Hunt3r the web application reconnaissance framework☆170Updated 2 years ago
- Multi-threaded, IPv6 aware, wordlists/single-user username enumeration via CVE-2018-15473☆109Updated last year
- Execute Trickest workflows right from your terminal☆93Updated last month
- A quick ‘n dirty nmap parser written in Golang to convert nmap xml to IP:Port notation.☆128Updated last year
- Make URL path combinations using a wordlist☆173Updated 2 years ago
- A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.☆183Updated 3 years ago
- This repository stores some of my custom BCheck Scan configurations. Its goal is to identify intriguing elements that warrant further man…☆102Updated last year
- HTTP parameter discovery suite.☆63Updated 5 years ago
- Wordlist to bruteforce for LFI☆126Updated 6 years ago
- Detailed information about API key / OAuth token (Description, Request, Response, Regex, Example)☆283Updated 2 years ago