assetnote / batchql
GraphQL security auditing script with a focus on performing batch GraphQL queries and mutations
☆372Updated 2 years ago
Alternatives and similar repositories for batchql:
Users that are interested in batchql are comparing it to the libraries listed below
- graphw00f is GraphQL Server Engine Fingerprinting utility for software security professionals looking to learn more about what technology…☆591Updated last month
- GraphQL threat framework used by security professionals to research security gaps in GraphQL implementations☆299Updated last year
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.☆187Updated 5 months ago
- Unofficial documentation for the great tool Param Miner☆176Updated 2 years ago
- Rust-based high performance domain permutation generator.☆280Updated last year
- Http request smuggling vulnerability scanner☆225Updated 2 years ago
- GraphQL automated security testing toolkit☆308Updated 10 months ago
- Security Auditor Utility for GraphQL APIs☆404Updated this week
- Adds a customizable "Send to..."-context-menu to your BurpSuite.☆151Updated 2 years ago
- A simple SSRF-testing sheriff written in Go☆322Updated 2 months ago
- NoSql Injection CLI tool, for finding vulnerable websites using MongoDB.☆368Updated 3 years ago
- Client Side Prototype Pollution Scanner☆510Updated 2 years ago
- ☆147Updated last year
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆300Updated 2 months ago
- Burp extension to create target specific and tailored wordlist from burp history.☆233Updated 3 years ago
- Vulnerability Scan with Nuclei☆246Updated last month
- CrackQL is a GraphQL password brute-force and fuzzing utility.☆319Updated 5 months ago
- GraphQL security testing tool☆120Updated 2 years ago
- GraphQL security workshop labs☆101Updated 6 months ago
- DOM XSS scanner for Single Page Applications☆400Updated 6 months ago
- Tool for catching and logging different types of requests.☆219Updated 4 years ago
- List of fresh DNS resolvers updated daily☆108Updated last year
- Prototype pollution scanner using headless chrome☆198Updated 2 years ago
- ☆172Updated 3 years ago
- Automated learning of regexes for DNS discovery☆362Updated last year
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆130Updated 3 years ago
- Check AWS S3 instances for read/write/delete access☆120Updated 2 years ago