Scalpel is a Burp extension for intercepting and rewriting HTTP traffic, either on the fly or in the Repeater using Python 3 scripts.
☆73May 31, 2024Updated 2 years ago
Alternatives and similar repositories for scalpel
Users that are interested in scalpel are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Piper Burp Suite Extender plugin☆17Jan 15, 2026Updated 7 months ago
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆149Dec 9, 2024Updated last year
- ☆17Jul 12, 2024Updated 2 years ago
- some fun php exploits☆81Nov 12, 2024Updated last year
- ☆65Mar 10, 2026Updated 5 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A Burp Extension that makes it easier to view all script code on a Response.☆18Nov 12, 2023Updated 2 years ago
- ☆13Jun 10, 2024Updated 2 years ago
- Fuzz WebSockets with custom Python code☆20Aug 21, 2024Updated 2 years ago
- Mishka Installer is a system plugin manager and run time pre-built library installer for Elixir☆42Updated this week
- slides for talk given during uscg 2023 combine☆36Sep 6, 2023Updated 2 years ago
- jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice☆304Apr 9, 2024Updated 2 years ago
- URL Fuzzing Tool.☆27Apr 21, 2025Updated last year
- An In-memory Embedding of CPython☆31May 24, 2021Updated 5 years ago
- ☆146Mar 10, 2026Updated 5 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- PrestaShop (1.6.x <= 1.6.1.23 or 1.7.x <= 1.7.4.4) Back Office Remote Code Execution (CVE-2018-19126)☆39Dec 12, 2018Updated 7 years ago
- CLI tool for tracking dependents repositories and sorting result by Stars ⭐☆44Jan 25, 2024Updated 2 years ago
- gozero: the wannabe zero dependency runtime for Go developers (experimental)☆25Updated this week
- Very Simple Fuzzer☆21Jun 12, 2020Updated 6 years ago
- ☆49Dec 28, 2023Updated 2 years ago
- Archive Alchemist is a tool for creating specially crafted archives to test extraction vulnerabilities.☆241Jul 24, 2025Updated last year
- ☆91Apr 29, 2024Updated 2 years ago
- ☆142Nov 9, 2024Updated last year
- A browser extension that allows you to monitor, intercept, and debug JavaScript sinks based on customizable configurations.☆812Dec 9, 2025Updated 8 months ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- ☆21Jun 26, 2024Updated 2 years ago
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆116Jun 23, 2025Updated last year
- A (small) web exploit framework☆98Dec 26, 2025Updated 8 months ago
- SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens☆172Nov 29, 2024Updated last year
- ☆47Feb 6, 2025Updated last year
- A script that greps composite key-like strings from a KeePassXC process dump, then uses a customized version of pykeepass library to unlo…☆33Nov 12, 2022Updated 3 years ago
- Attack Active Directory Trusts with a single tool☆14Jan 15, 2025Updated last year
- JavaScript beacons and C2 to be used for XSS payload or post exploitation implants on webapp servers or desktop software to monitor users…☆478Jul 9, 2026Updated last month
- HTTP request smuggling attack helper/CLI tools to manipulate HTTP packets☆36Sep 23, 2022Updated 3 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- ☆93Sep 18, 2021Updated 4 years ago
- IronSharpPack is a repo of popular C# projects that have been embedded into IronPython scripts that execute an AMSI bypass and then refle…☆121May 2, 2024Updated 2 years ago
- Burp Plugin to Bypass WAFs through the insertion of Junk Data☆1,506Jul 14, 2025Updated last year
- Burp Suite extension for Radamsa-powered fuzzing with Intruder☆21Mar 26, 2022Updated 4 years ago
- A tool to inspect and attack version 1 GUIDs☆240Oct 13, 2022Updated 3 years ago
- burpsuite extension to analyze javascript files using semgrep☆13Feb 3, 2025Updated last year
- Detect public repository dependencies in the GitHub repositories with an orphan required library.☆24Jun 19, 2026Updated 2 months ago