SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens
☆170Nov 29, 2024Updated last year
Alternatives and similar repositories for sign-saboteur
Users that are interested in sign-saboteur are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Burp extension used to snip any header from all the requests.☆25Nov 12, 2023Updated 2 years ago
- FlowMate, a BurpSuite extension that brings taint analysis to web applications, by tracking all parameters send to a target application a…☆168Oct 28, 2025Updated 9 months ago
- Burp Suite Extension - Trigger actions and reshape HTTP request/response and WebSocket traffic using configurable rules☆110Nov 16, 2025Updated 8 months ago
- A BurpSuite extension to deploy an OpenVPN config file to DigitalOcean and set up a SOCKS proxy to route traffic through it☆51Nov 5, 2025Updated 8 months ago
- Burp Plugin to Bypass WAFs through the insertion of Junk Data☆1,503Jul 14, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Search for sensitive data in Postman public library. Original work from https://github.com/cosad3s/postleaks☆32Feb 13, 2026Updated 5 months ago
- ☆92Apr 29, 2024Updated 2 years ago
- This repository hosts several snippets and file related to the BsidesLV 2024 talk about Shadow and Zombie APIs by me☆18Aug 5, 2024Updated last year
- ngrok Collaborator Link — yet another Burp Collaborator alternative for free with ngrok.☆116Jan 4, 2024Updated 2 years ago
- A BurpSuite extension to create a custom word-list of endpoint and parameters for enumeration and fuzzing☆142Jun 27, 2023Updated 3 years ago
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a p…☆31Updated this week
- Simple PoC for demonstrating Race Conditions on Websockets☆53Sep 14, 2023Updated 2 years ago
- ☆65Mar 10, 2026Updated 4 months ago
- A collection of utilities for building extensions using Burp's Montoya API☆52Apr 14, 2026Updated 3 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Unofficial documentation for the great tool Param Miner☆186Aug 21, 2022Updated 3 years ago
- Find authentication (authn) and authorization (authz) security bugs in web application routes.☆280Sep 11, 2025Updated 10 months ago
- Fuzz WebSockets with custom Python code☆20Aug 21, 2024Updated last year
- PrestaXSRF is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's critical…☆32Dec 26, 2023Updated 2 years ago
- Go scanner to find web cache poisoning vulnerabilities in a list of URLs☆150Feb 21, 2024Updated 2 years ago
- LogSnare: A playground for testing, preventing, and logging IDOR vulnerabilities.☆33Mar 4, 2024Updated 2 years ago
- For unpacking base64:ed "Save items"-content from Burp (From search + proxy history)☆55Feb 26, 2025Updated last year
- ☆142Nov 9, 2024Updated last year
- A rapid HTTP downgrade smuggling scanner written in Go.☆313May 16, 2024Updated 2 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Escalate your SSRF vulnerabilities on Modern Cloud Environments. `surf` allows you to filter a list of hosts, returning a list of viable …☆757Jul 10, 2026Updated 2 weeks ago
- PyBurp is a Burp Suite extension that provides predefined Python functions for HTTP/WebSocket traffic modification, context menu registra…☆38Apr 24, 2026Updated 3 months ago
- Autonomous AI C2☆33Jul 23, 2024Updated 2 years ago
- jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice☆302Apr 9, 2024Updated 2 years ago
- gRPC-Web Pentesting Suite + Burp Suite Extension / Hack gRPC-Web Applications (Official BApp Extension Available)☆258Jun 13, 2026Updated last month
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆38Mar 4, 2025Updated last year
- Burp Extension to add additional functionality for pentesting websocket based applications☆107Aug 27, 2025Updated 11 months ago
- Unleash the power of cloud☆819Nov 19, 2024Updated last year
- Burp Extension for testing authorization issues. Automated request repeating and parameter value extraction on the fly.☆221Nov 4, 2025Updated 8 months ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- APIDetector: Efficiently scan for exposed Swagger endpoints across web domains and subdomains. Supports HTTP/HTTPS, multi-threading, and …☆378Mar 28, 2025Updated last year
- Discover hidden debugging parameters and uncover web application secrets☆250Feb 4, 2026Updated 5 months ago
- TInjA is a CLI tool for testing web pages for template injection vulnerabilities and supports 44 of the most relevant template engines fo…☆424Apr 27, 2026Updated 3 months ago
- Fast and customizable vulnerability scanner For JIRA written in Python☆343Dec 31, 2024Updated last year
- A Firefox Extension to track postMessage usage (url, domain and stack) both by logging using CORS and also visually as an extension-icon☆28Dec 9, 2024Updated last year
- ☆570Mar 28, 2024Updated 2 years ago
- A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.☆865Jul 22, 2026Updated last week