JWTLens - Burp Suite extension for automated JWT security testing. 62 checks: passive scanning, algorithm confusion, signature bypass, KID injection, weak secret brute force, and a built-in JWT Forge tab. Works automatically as you browse.
☆56Mar 19, 2026Updated 6 months ago
Alternatives and similar repositories for JWTLens
Users that are interested in JWTLens are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Live runtime audit for installed Android apps. Runs on the rooted phone, serves a browser dashboard.☆33May 23, 2026Updated 4 months ago
- A natural evolution of a evolution of Burp Suite's Repeater tool☆17Sep 1, 2026Updated last month
- A full-stack web application that aggregates all HackerOne bug bounty programs that have source code repositories (GitHub, GitLab, Bitbuc…☆18Mar 16, 2026Updated 6 months ago
- This is a PoC code for Talks: From Spoofing to Tunneling: New Red Team's Networking Techniques for Initial Access and Evasion☆18Jul 21, 2025Updated last year
- List of Bchecks & Bambdas that i personaly use☆10Mar 22, 2026Updated 6 months ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Patchless AMSI + ETW bypass via PAGE_GUARD exceptions and Vectored Exception Handler (VEH)☆16Mar 24, 2026Updated 6 months ago
- Printer exploitation framework for penetration testing. Discovers printers via PJL scanning, checks for default credentials, and extracts…☆22Mar 10, 2026Updated 6 months ago
- This repository contains random Nuclei templates I've created. Most of them based on recent security issues and exploits.☆18May 21, 2024Updated 2 years ago
- ☆18Oct 4, 2020Updated 6 years ago
- Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.☆10Sep 22, 2023Updated 3 years ago
- Search-driven OSINT and reconnaissance toolkit for web and GitHub discovery.☆41Sep 17, 2026Updated 3 weeks ago
- Advanced Command and Control Framework for Authorized Red Team Operations☆57Mar 1, 2026Updated 7 months ago
- GBounty Profiles are customizable security test definitions used by the GBounty web scanner to identify vulnerabilities in web applicatio…☆25Mar 11, 2025Updated last year
- Firebase_Checker is Python tool to analyze APK files and web applications for Firebase-related vulnerabilities. This tool identifies secu…☆63Nov 6, 2025Updated 11 months ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Password:ВсеБудеУкраїна☆17Mar 21, 2022Updated 4 years ago
- CVE 2025 27237 Zabbix LPE proof of concept.☆19Jan 26, 2026Updated 8 months ago
- A Burp Suite extension that converts IP addresses to decimal notation, useful for SSRF bypass and WAF evasion testing. Created by Harshad…☆13Dec 9, 2024Updated last year
- Acunetix automate telegram bot☆12Jul 19, 2024Updated 2 years ago
- Repository containing sample apps and Frida scripts for bypassing in-app-protections in iOS☆16Apr 6, 2025Updated last year
- Blind XSS SVG☆10Mar 27, 2023Updated 3 years ago
- A python script to automatically dump files and source code of a Symfony server in debug mode.☆13Sep 8, 2026Updated last month
- List of Mine Private wordlist i use for fuzzing☆98Jun 17, 2026Updated 3 months ago
- Wayfiles is a tool designed to search for juicy files and URLs within a folder/file with results of tools like gau, waymore, waybackurls,…☆16Feb 22, 2026Updated 7 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Search for github leaks by combining gitleaks and git-hound capabilities with rate control and exhaustive search.☆26Jun 20, 2026Updated 3 months ago
- Password list collected from Cisco devices☆20Mar 25, 2019Updated 7 years ago
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆32May 30, 2024Updated 2 years ago
- ☆21Sep 25, 2026Updated 2 weeks ago
- Bulk scanning tool for ServiceNow CVE-2024-4879 vulnerability☆10Jul 12, 2024Updated 2 years ago
- A Burp extension to help pentesters copy requests / responses for reports.☆54Jul 8, 2025Updated last year
- SolarView Compact through 6.00 downloader.php commands injection (RCE) nuclei-templates☆15Jun 16, 2023Updated 3 years ago
- Powerful LLM Query Framework with YAML Prompt Templates. Made for Automation☆36Sep 20, 2025Updated last year
- SafeCrypt is an academic ransomware simulation suite developed for Red Team engagements. It demonstrates modern malware techniques includ…☆38Oct 3, 2025Updated last year
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- # 🕵️ PathCatcher v1.0 - Path Traversal & LFI Scanner☆24Jul 13, 2025Updated last year
- All-in Fuzzer. Burp suite extension for auto fuzzing params, headers, body☆36Apr 9, 2026Updated 6 months ago
- ☆22Dec 7, 2021Updated 4 years ago
- Unwaf is a Go tool designed to help identify WAF bypasses using passive techniques. It automates the process of discovering the real orig…☆192Feb 22, 2026Updated 7 months ago
- Bcheck scripts for Burp☆31Aug 7, 2024Updated 2 years ago
- burpsuite extension to analyze javascript files using semgrep☆13Feb 3, 2025Updated last year
- React2Shell Ultimate - The most comprehensive CVE-2025-66478 Scanner for Next.js RSC RCE vulnerability. Multi-mode detection, WAF bypass,…☆157Dec 10, 2025Updated 10 months ago