assetnote / batchqlLinks
GraphQL security auditing script with a focus on performing batch GraphQL queries and mutations
☆386Updated 2 years ago
Alternatives and similar repositories for batchql
Users that are interested in batchql are comparing it to the libraries listed below
Sorting:
- graphw00f is GraphQL Server Engine Fingerprinting utility for software security professionals looking to learn more about what technology…☆647Updated 2 weeks ago
- GraphQL threat framework used by security professionals to research security gaps in GraphQL implementations☆312Updated last month
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.☆193Updated 10 months ago
- NoSql Injection CLI tool, for finding vulnerable websites using MongoDB.☆381Updated 3 years ago
- GraphQL automated security testing toolkit☆320Updated last year
- Unofficial documentation for the great tool Param Miner☆178Updated 2 years ago
- Prototype pollution scanner using headless chrome☆218Updated 2 years ago
- The only GraphQL wordlist you'll ever need. Operations, field names, type names... Collected on more than 60k distinct GraphQL schemas.☆365Updated last year
- Rust-based high performance domain permutation generator.☆289Updated last year
- Security Auditor Utility for GraphQL APIs☆477Updated 4 months ago
- ☆173Updated 4 years ago
- ☆152Updated last year
- Research on GraphQL from an AppSec point of view.☆415Updated 2 years ago
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆313Updated 7 months ago
- DOM XSS scanner for Single Page Applications☆411Updated 3 weeks ago
- Fleex makes it easy to create multiple VPS on cloud providers and use them to distribute workloads.☆263Updated 10 months ago
- You can read the writeup on this script here☆193Updated 3 years ago
- 🐙 Cross-document messaging security research tool powered by https://enso.security☆291Updated 2 years ago
- ☆412Updated 4 years ago
- Tool for catching and logging different types of requests.☆220Updated 4 years ago
- CrackQL is a GraphQL password brute-force and fuzzing utility.☆335Updated 10 months ago
- A fast and minimal JS endpoint extractor☆359Updated 7 months ago
- 🕸️ Blazing fast GraphQL endpoints finder using subdomain enumeration, scripts analysis and bruteforce. 🕸️☆218Updated 2 years ago
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆301Updated 2 years ago
- GQLSpection - parses GraphQL introspection schema and generates possible queries☆89Updated 3 months ago
- Automated learning of regexes for DNS discovery☆370Updated 2 years ago
- Http request smuggling vulnerability scanner☆227Updated 2 years ago
- Burp extension to create target specific and tailored wordlist from burp history.☆240Updated 3 years ago
- Secret and/or credential patterns used for gf.☆240Updated 2 years ago
- A simple SSRF-testing sheriff written in Go☆327Updated 7 months ago