Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease application security people work and allow them perform an automatic authorization tests
☆1,141Feb 25, 2026Updated 3 weeks ago
Alternatives and similar repositories for Autorize
Users that are interested in Autorize are comparing it to the libraries listed below
Sorting:
- Automated HTTP Request Repeating With Burp Suite☆892Dec 15, 2021Updated 4 years ago
- AuthMatrix is a Burp Suite extension that provides a simple way to test authorization in web applications and web services.☆641Mar 7, 2024Updated 2 years ago
- Portable and flexible web application security assessment tool.It parses Burp Suite log and performs various tests depending on the modul…☆123Apr 4, 2018Updated 7 years ago
- Turbo Intruder is a Burp Suite extension for sending large numbers of HTTP requests and analyzing the results.☆1,734Dec 15, 2025Updated 3 months ago
- Burp Extension for a passive scanning JS files for endpoint links.☆815Mar 22, 2024Updated 2 years ago
- ☆2,321Dec 8, 2023Updated 2 years ago
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the ac…☆1,787Apr 26, 2024Updated last year
- Advanced Burp Suite Logging Extension☆697May 31, 2024Updated last year
- Generates permutations, alterations and mutations of subdomains and then resolves them☆2,477Jan 9, 2025Updated last year
- A python script that finds endpoints in JavaScript files☆4,300Apr 13, 2024Updated last year
- Finds unknown classes of injection vulnerabilities☆709Apr 30, 2025Updated 10 months ago
- SQLiPy is a Python plugin for Burp Suite that integrates SQLMap using the SQLMap API.☆262May 16, 2025Updated 10 months ago
- Automatic SSRF fuzzer and exploitation tool☆3,505Sep 4, 2025Updated 6 months ago
- ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.☆2,250Jan 8, 2026Updated 2 months ago
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆4,125Apr 21, 2024Updated last year
- HTTP parameter discovery suite.☆6,142Feb 20, 2025Updated last year
- A toolkit for testing, tweaking and cracking JSON Web Tokens☆6,435May 1, 2025Updated 10 months ago
- ☆1,413Jan 22, 2026Updated 2 months ago
- Nuclei plugin for BurpSuite☆1,324Oct 22, 2025Updated 5 months ago
- HTTP file upload scanner for Burp Proxy☆491Dec 25, 2023Updated 2 years ago
- InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable…☆1,744Feb 16, 2026Updated last month
- The XSS Hunter service - a portable version of XSSHunter.com☆1,543Dec 7, 2022Updated 3 years ago
- This tool generates gopher link for exploiting SSRF and gaining RCE in various servers☆3,324Apr 18, 2023Updated 2 years ago
- Burp plugin able to find reflected XSS on page in real-time while browsing on site☆1,204Feb 2, 2021Updated 5 years ago
- "Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.☆5,592Feb 8, 2025Updated last year
- A burp extension that add some useful function to Context Menu 添加一些右键菜单让burp用起来更顺畅☆1,903Mar 11, 2026Updated last week
- Fast passive subdomain enumeration tool.☆13,283Updated this week
- A curated list of amazingly awesome Burp Extensions☆3,379Feb 17, 2026Updated last month
- Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3☆2,063Jan 2, 2024Updated 2 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆8,812Dec 4, 2025Updated 3 months ago
- A high-performance DNS stub resolver for bulk lookups and reconnaissance (subdomain enumeration)☆3,550Jul 21, 2025Updated 8 months ago
- DNS Takeover tool written in Go☆2,033Mar 16, 2026Updated last week
- A Tool for Domain Flyovers☆5,912May 22, 2022Updated 3 years ago
- SSRF (Server Side Request Forgery) testing resources☆2,483Oct 12, 2024Updated last year
- The Swiss Army knife for automated Web Application Testing☆2,324May 8, 2024Updated last year
- This tool can be used to brute discover GET and POST parameters☆1,396Aug 24, 2019Updated 6 years ago
- J2EEScan is a plugin for Burp Suite Proxy. The goal of this plugin is to improve the test coverage during web application penetration tes…☆679Oct 29, 2025Updated 4 months ago
- Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.☆4,853Jan 1, 2025Updated last year
- EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.☆5,660Jan 5, 2026Updated 2 months ago