☆46Jun 28, 2025Updated 8 months ago
Alternatives and similar repositories for QaFuzz
Users that are interested in QaFuzz are comparing it to the libraries listed below
Sorting:
- Assist security researchers in identifying threats☆14Sep 4, 2024Updated last year
- ARL 灯塔的 WIH 利用☆32Jul 2, 2024Updated last year
- 一款被动扫描ssrf的burpsuite插件☆20Dec 30, 2022Updated 3 years ago
- 各类综合 upload_fuzz,smb_fuzz,tls绕过,被动指纹扫描☆69Jun 6, 2025Updated 9 months ago
- ☆169Dec 26, 2025Updated 2 months ago
- JSFindAPI是一款自动从html页面中获取js链接,并自动访问js提取js中的api路径,然后自动进行api未授权测试的插件,同时也可被动监听,当访问js时自动提取api进行访问,提取api接口主要根据AJAX,XMLHttpRequest,axios,Vue.js等…☆30Oct 20, 2025Updated 5 months ago
- ARL与AWVS联动,实现自动化扫描并推送结果☆20Jul 11, 2024Updated last year
- Burpsuite存储桶配置不当漏洞检测插件☆194Jul 16, 2025Updated 8 months ago
- js文件敏感信息内容提取☆28Aug 22, 2023Updated 2 years ago
- AutoFuzz是一款安全测试的辅助型BurpSuite插件,主要用于自动识别请求中的参数,根据预设的payload逐个发包测试,从而提高测试效率。☆116Jun 2, 2025Updated 9 months ago
- XSS-Detector是一款基于多线程并发架构的Burp Suite扩展插件,通过精确请求-响应映射机制高效检测Web应用中的XSS漏洞。☆24Apr 27, 2025Updated 10 months ago
- ☆40Nov 25, 2024Updated last year
- In order to better test for logical vulnerabilities☆14Feb 20, 2024Updated 2 years ago
- SSRF_Detector是一款基于Burpsuite MontoyaAPI的黑盒SSRF漏洞自动化检测工具,用于检测无回显&全回显SSRF漏洞,提供了多种功能供用户自定义,包括但不限于关键字配置,Payload配置以及检测字符串配置☆44Apr 8, 2025Updated 11 months ago
- GXX是一款强大的指纹识别工具,基于YAML配置的规则进行目标系统识别。 本工具支持多种协议(HTTP/HTTPS、TCP、UDP),可进行高效的批量目标扫描和精准识别。☆32Feb 22, 2026Updated last month
- 批量处理url链接,获取多级路径并打印☆46Jul 12, 2023Updated 2 years ago
- ☆228Feb 4, 2026Updated last month
- xss漏洞挖掘插件☆37Feb 6, 2025Updated last year
- 一款全方位扫描工具,具备高效的机器探活,端口探活,协议识别,指纹识别,漏洞 扫描等功能☆395Sep 13, 2025Updated 6 months ago
- Muki is an active asset fingerprinting tool built for red teams — powered by 30,000+ precision signatures, proxy rotation, and intelligen…☆108Jan 13, 2026Updated 2 months ago
- ByPassTamperPlus / SQLMap加强绕WAF / Code By:Tas9er☆84Feb 12, 2026Updated last month
- 一款微信小程序源码包信息收集工具,根据已有项目改编☆24Feb 11, 2025Updated last year
- ☆112Dec 8, 2025Updated 3 months ago
- 浏览器数据清除脚本,可以检查浏览器中有没有存储特定网址的密码,然后实行数据的清除,主要是用于攻防演练中蓝队防止钓鱼获取浏览器密码。☆18Jul 8, 2024Updated last year
- Burp插件,自动化挖掘SSRF,Redirect,Sqli漏洞,自定义匹配参数☆464Sep 10, 2023Updated 2 years ago
- 泛微E-Office文件上传漏洞(CNVD-2021-49104)☆10Nov 27, 2021Updated 4 years ago
- jshERP Exploit GUI☆22Aug 26, 2024Updated last year
- CVE-2024-36401 图形化利用工具,支持各个JDK版本利用以及回显、内存马实现☆39Jul 16, 2025Updated 8 months ago
- 瑞数VMP bypass工具,适用于burpsuite。☆71Apr 10, 2025Updated 11 months ago
- 基于load data逻辑漏洞的Mysql蜜罐☆23Jul 14, 2025Updated 8 months ago
- ☆13Oct 6, 2022Updated 3 years ago
- dirsx 是一款能够自动化过滤扫描结果的目录扫描工具☆356Mar 12, 2026Updated last week
- Code By:Tas9er / ActiveMQ漏洞安全测试☆35Jan 27, 2021Updated 5 years ago
- burp插件,Oss漏洞被动扫描☆98Aug 8, 2025Updated 7 months ago
- burpsuite POST数据包base64编码插件☆17Mar 14, 2024Updated 2 years ago
- EMQX Dashboard Malicious Plugin leading to RCE☆47Jun 16, 2025Updated 9 months ago
- HiddenDomainHunter☆20Apr 15, 2023Updated 2 years ago
- 此文件用于配套“卫界安全-阿呆攻防”中所涉及的代码类文档☆11Apr 26, 2025Updated 10 months ago
- Simple x64dbg plugin to show registers on every step.☆16Jul 27, 2019Updated 6 years ago