PortSwigger / turbo-intruder
Turbo Intruder is a Burp Suite extension for sending large numbers of HTTP requests and analyzing the results.
☆1,561Updated this week
Alternatives and similar repositories for turbo-intruder:
Users that are interested in turbo-intruder are comparing it to the libraries listed below
- Automatic SSRF fuzzer and exploitation tool☆3,084Updated 8 months ago
- SSRF (Server Side Request Forgery) testing resources☆2,385Updated 4 months ago
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the ac…☆1,708Updated 9 months ago
- Automated & Manual Wordlists provided by Assetnote☆1,380Updated 6 months ago
- Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3☆1,896Updated last year
- ☆972Updated last month
- ☆1,298Updated 2 weeks ago
- A python script that finds endpoints in JavaScript files☆3,826Updated 10 months ago
- This tool generates gopher link for exploiting SSRF and gaining RCE in various servers☆2,963Updated last year
- latest version of scanners for IIS short filename (8.3) disclosure vulnerability☆1,489Updated last year
- Fetch all the URLs that the Wayback Machine knows about for a domain☆3,714Updated 9 months ago
- The Swiss Army knife for automated Web Application Testing☆2,195Updated 9 months ago
- Generates permutations, alterations and mutations of subdomains and then resolves them☆2,379Updated last month
- Fetch many paths for many hosts - without killing the hosts☆1,625Updated last year
- ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.☆1,979Updated 2 months ago
- Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing☆2,620Updated 7 months ago
- Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.☆1,592Updated 2 months ago
- Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease appli…☆987Updated last month
- 🎯 Fast CORS misconfiguration vulnerabilities scanner☆1,061Updated 3 years ago
- An OOB interaction gathering server and client library☆3,595Updated this week
- dnsx is a fast and multi-purpose DNS toolkit allow to run multiple DNS queries of your choice with a list of user-supplied resolvers.☆2,268Updated this week
- MassDNS wrapper written in go to enumerate valid subdomains using active bruteforce as well as resolve subdomains with wildcard filtering…☆1,377Updated this week
- Take a list of domains and probe for working HTTP and HTTPS servers☆2,949Updated 7 months ago
- A fast tool to scan CRLF vulnerability written in Go☆1,385Updated this week
- A tool for adding new lines to files, skipping duplicates☆1,456Updated last year
- HTTP parameter discovery suite.☆5,439Updated 2 months ago
- Quick SQLMap Tamper Suggester☆1,362Updated 2 years ago
- HackBar plugin for Burpsuite☆1,565Updated 3 years ago
- Burp plugin able to find reflected XSS on page in real-time while browsing on site☆1,140Updated 4 years ago
- List of XSS Vectors/Payloads☆1,214Updated last month