TEag1e / BurpCollectorView external linksLinks
通过BurpSuite来构建自己的爆破字典,可以通过字典爆破来发现隐藏资产。
☆502Jan 30, 2024Updated 2 years ago
Alternatives and similar repositories for BurpCollector
Users that are interested in BurpCollector are comparing it to the libraries listed below
Sorting:
- SRC子域名资产监控☆1,300Jan 14, 2021Updated 5 years ago
- 360/0Kee-Team/crawlergo动态爬虫结合长亭XRAY扫描器的被动扫描功能☆1,185Nov 10, 2021Updated 4 years ago
- Burp被动扫描流量转发插件☆1,459Jun 17, 2024Updated last year
- Burp suite 分块传输辅助插件☆2,021Feb 23, 2022Updated 3 years ago
- PoCBox - Vulnerability Test Aid Platform☆964Mar 26, 2024Updated last year
- ☆404Feb 28, 2020Updated 5 years ago
- 上传漏洞fuzz字典生成脚本☆1,271Apr 1, 2021Updated 4 years ago
- 从wooyun中提取的payload,以及burp插件☆840Jun 17, 2022Updated 3 years ago
- 在渗透测试中快速检测常见中间件、组件的高危漏洞。☆729Mar 21, 2022Updated 3 years ago
- 一个用于前端加密Fuzz的Burp Suite插件☆1,058Mar 6, 2020Updated 5 years ago
- 对目标域名进行快速的存活扫描、简单的指纹识别、目录扫描☆915Dec 8, 2022Updated 3 years ago
- 递归式寻找域名和api。☆724Aug 3, 2023Updated 2 years ago
- Burpsuite-Plugins-Usage☆518Apr 7, 2020Updated 5 years ago
- 一个利用OneForAll进行子域收集、Shodan API端口扫描、Xray漏洞Fuzz、Server酱的自动化漏洞扫描、即时通知提醒的漏洞挖掘辅助工具☆738Dec 8, 2022Updated 3 years ago
- mysql注入,bypass的一些心得☆1,329Jun 25, 2024Updated last year
- 用于辅助安全工程师漏洞挖掘、测试、复现,集合了mock、httplog、dns tools、xss,可用于测试各类无回显、无法直观判断或特定场景下的漏洞。☆868Jul 21, 2019Updated 6 years ago
- 增强版WeblogicScan、检测结果更精确、插件化、添加CVE-2019-2618,CVE-2019-2729检测,Python3支持☆969Jun 16, 2024Updated last year
- A burp extension that add some useful function to Context Menu 添加一些右键菜单让burp用起来更顺畅☆1,894Jan 15, 2026Updated 3 weeks ago
- Passive Security Scanner (被动式安全扫描器)☆1,946Feb 8, 2023Updated 3 years ago
- Collect JSP webshell of various implementation methods. 梳理和发现的JSP Webshell各种姿势☆1,404Jan 18, 2022Updated 4 years ago
- 这是一个用于IP和域名碰撞匹配访问的小工具,旨意用来匹配出渗透过程中需要绑定hosts才能访问的弱主机或内部系统。☆1,189Apr 30, 2019Updated 6 years ago
- 用于记录分享一些有趣的案例☆867Jan 10, 2022Updated 4 years ago
- 瓶颈渗透,web渗透,red红队,fuzz param,注释,js字典,ctf☆717Jul 20, 2022Updated 3 years ago
- 服务端配置错误情况下用于伪造ip地址进行测试的Burp Suite插件☆1,640Sep 29, 2022Updated 3 years ago
- 通过 Redis 主从写出无损文件☆719May 25, 2020Updated 5 years ago
- JNDI服务利用工具 RMI/LDAP,支持部分场景回显、内存shell,高版本JDK场景下利用等,fastjson rce命令执行,log4j rce命令执行 漏洞检测辅助工具☆2,011May 21, 2024Updated last year
- bayonet是一款src资产管理系统,从子域名、端口服务、漏洞、爬虫等一体化的资产管理系统☆1,508Nov 22, 2022Updated 3 years ago
- You Know, For WEB Fuzzing !☆8,255Nov 13, 2023Updated 2 years ago
- JSFinder is a tool for quickly extracting URLs and subdomains from JS files on a website.☆2,909Nov 24, 2021Updated 4 years ago
- 一键ThinkPHP漏洞检测☆1,162Nov 1, 2023Updated 2 years ago
- Shiro<=1.2.4反序列化,一键检测工具☆989Mar 4, 2021Updated 4 years ago
- Shiro550/Shiro721 一键化利用工具,支持多种回显方式☆1,949Jun 4, 2021Updated 4 years ago
- An exquisite dns&http log server for verify SSRF/XXE/RFI/RCE vulnerability☆469Sep 16, 2023Updated 2 years ago
- 一键提取安卓应用中可能存在的敏感信息。☆1,011Oct 21, 2021Updated 4 years ago
- Python2编写的struts2漏洞全版本检测和利用工具☆1,420May 7, 2019Updated 6 years ago
- Reference:https://www.w2n1ck.com/article/44/☆155Mar 7, 2020Updated 5 years ago
- Packer Fuzzer is a fast and efficient scanner for security detection of websites constructed by javascript module bundler such as Webpack…☆3,205May 24, 2024Updated last year
- Redis 4.x/5.x RCE☆975Nov 30, 2021Updated 4 years ago
- domain_hunter的高级版本,SRC挖洞、HW打点之必备!自动化资产收集;快速Title获取;外部工具联动;等等☆2,116Jan 23, 2026Updated 3 weeks ago