Introduction to CYS4-SensitiveDiscoverer, a Burp extension that discovers sensitive information inside HTTP messages.
☆26Nov 26, 2024Updated last year
Alternatives and similar repositories for sensitive-discoverer
Users that are interested in sensitive-discoverer are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Sensitive Discoverer, a Burp extension to discovers sensitive information inside HTTP messages.☆51Jan 26, 2026Updated 6 months ago
- Local Windows credential extraction☆22Jul 14, 2026Updated 3 weeks ago
- ☆32Feb 25, 2022Updated 4 years ago
- A Burp extension to Fuzz URLs for HTTP parser inconsistencies☆15Jan 9, 2024Updated 2 years ago
- HaE - BurpSuite Highlighter and Extractor☆34Jul 1, 2026Updated last month
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A quick reference script that can easily display reverse shells for different languages.☆20May 28, 2020Updated 6 years ago
- use python on windows with full submodule support without installation☆30Jan 23, 2025Updated last year
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆31Oct 21, 2025Updated 9 months ago
- burp suite插件☆14Jul 9, 2023Updated 3 years ago
- Analyze an APK archive.☆28Feb 24, 2024Updated 2 years ago
- ☆21Dec 22, 2020Updated 5 years ago
- ☆42Dec 22, 2020Updated 5 years ago
- Simple Django to show post-exploitation options when server-side template injection (SSTI) is present in app using Django Templates.☆24Jun 1, 2021Updated 5 years ago
- CVE-2025-31324, SAP Exploit☆25Apr 28, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- 红队命令生成器,输入固定参数,输出常用命令☆42Jul 31, 2022Updated 4 years ago
- Attempts to suspend all known AV/EDRs processes on Windows using syscalls and the undocumented NtSuspendProcess API. Made with <3 for pen…☆12May 11, 2023Updated 3 years ago
- Place for random PoCs☆17May 21, 2020Updated 6 years ago
- VHostChecker takes a csv list of targets in the form of domain,ip,port and runs 4 seperate connection checks to get a quick sense of how …☆34Sep 14, 2023Updated 2 years ago
- Generates permutations, alterations and mutations of subdomains. Auto Resolve what we find.☆11Dec 8, 2020Updated 5 years ago
- ☆13Nov 25, 2024Updated last year
- Apache Airflow < 2.4.0 DAG example_bash_operator RCE POC☆41Nov 19, 2022Updated 3 years ago
- FlowMate, a BurpSuite extension that brings taint analysis to web applications, by tracking all parameters send to a target application a…☆168Oct 28, 2025Updated 9 months ago
- LeakIX maintained plugins implementing the l9format golang plugin interface.☆12Dec 9, 2021Updated 4 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- NTLM/Negotiate authentication over HTTP that supports Pass The Hash Mode (PtH)☆17Sep 13, 2024Updated last year
- Kill Kubernetes pods by playing Id's DOOM!☆10May 31, 2021Updated 5 years ago
- Objectify-s3 is a tool that recursively checks AWS S3 buckets and objects for misconfigured permissions.☆15Jun 20, 2026Updated last month
- header-fuzz allows you to fuzz any HTTP header with a wordlist and evaluate success or failure based on the returning HTTP status code.☆16Apr 15, 2020Updated 6 years ago
- A formula to calculate bounty amounts.☆15Dec 2, 2017Updated 8 years ago
- Jupiter Brain manages servers☆14Mar 29, 2019Updated 7 years ago
- PyBurp is a Burp Suite extension that provides predefined Python functions for HTTP/WebSocket traffic modification, context menu registra…☆38Apr 24, 2026Updated 3 months ago
- Manticore Ransomware Emulation - Educational Purpose Only!☆10Aug 2, 2020Updated 6 years ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆32Jun 22, 2023Updated 3 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A script that parses PowerView's output for GPO analysis. Integrated into bloodhound to find misconfigurations of URA, SMB signing etc☆15Feb 9, 2020Updated 6 years ago
- Generate a dynamic PAC script that will route traffic to your Burp proxy only if it matches the scope defined in your Burp target.☆34Nov 8, 2021Updated 4 years ago
- Fastjson反序列化环境(一步步)☆14Jun 17, 2022Updated 4 years ago
- 移动端渗透测试☆13Aug 7, 2022Updated 4 years ago
- A tool for extracting, modifying, and crafting ASDM binary packages (CVE-2022-20829)☆13Aug 15, 2022Updated 3 years ago
- 一键报文解码,HVV,蓝队防守利器☆23Sep 27, 2024Updated last year
- Sukoshi is a proof-of-concept Python/C++ implant that leverages the MQTT protocol for C2 and uses AWS IoT Core as infrastructure.☆50Mar 26, 2022Updated 4 years ago