alphaSeclab / awesome-burp-suite
Awesome Burp Suite Resources. 400+ open source Burp plugins, 400+ posts and videos.
☆1,025Updated 5 years ago
Alternatives and similar repositories for awesome-burp-suite:
Users that are interested in awesome-burp-suite are comparing it to the libraries listed below
- HackBar plugin for Burpsuite☆1,563Updated 3 years ago
- A collection of proof-of-concept exploit scripts written by the team at Rhino Security Labs for various CVEs.☆832Updated last month
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the ac…☆1,714Updated 10 months ago
- Automatic SSRF fuzzer and exploitation tool☆3,123Updated 3 weeks ago
- Collection of commands, tips and tricks and references I found useful during preparation for OSCP exam.☆429Updated 3 years ago
- SSRF (Server Side Request Forgery) testing resources☆2,395Updated 5 months ago
- Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.☆1,606Updated 3 months ago
- This tool generates gopher link for exploiting SSRF and gaining RCE in various servers☆2,999Updated last year
- A collection of pentest and development tips☆1,106Updated 2 years ago
- CSRF Scanner☆560Updated 8 months ago
- Pwn stuff.☆1,767Updated 2 years ago
- A Burp Suite extension to help pentesters to bypass WAFs or test their effectiveness using a number of techniques☆721Updated 5 years ago
- Automated HTTP Request Repeating With Burp Suite☆869Updated 3 years ago
- Burp Extension for a passive scanning JS files for endpoint links.☆769Updated last year
- Burpsuite Extension to bypass 403 restricted directory☆1,604Updated last year
- A curated list of amazingly awesome Burp Extensions☆3,101Updated last month
- HTTP file upload scanner for Burp Proxy☆489Updated last year
- Turbo Intruder is a Burp Suite extension for sending large numbers of HTTP requests and analyzing the results.☆1,576Updated this week
- Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner☆1,773Updated 2 years ago
- ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.☆1,988Updated last week
- Quick SQLMap Tamper Suggester☆1,363Updated 2 years ago
- Blind WAF identification tool☆657Updated 8 months ago
- Code-Audit-Challenges☆980Updated 6 years ago
- weblogic 漏洞扫描工具。目前包含对以下漏洞的检测能力:CVE-2014-4210、CVE-2016-0638、CVE-2016-3510、CVE-2017-3248、CVE-2017-3506、CVE-2017-10271、CVE-2018-2628、CVE-201…☆2,033Updated last year
- A tool for embedding XXE/XML exploits into different filetypes☆1,072Updated 3 months ago
- This Lab contain the sample codes which are vulnerable to Server-Side Request Forgery attack☆702Updated last year
- Faster xss scanner,support reflected-xss and dom-xss☆445Updated last year
- Sublert is a security and reconnaissance tool which leverages certificate transparency to automatically monitor new subdomains deployed b…☆1,001Updated 4 years ago
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆3,892Updated 11 months ago
- List of XSS Vectors/Payloads☆1,222Updated 2 months ago