Material for the training "Developing Burp Suite Extensions – From Manual Testing to Security Automation"
☆358Oct 14, 2020Updated 5 years ago
Alternatives and similar repositories for burpdeveltraining
Users that are interested in burpdeveltraining are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the ac…☆1,813Apr 26, 2024Updated 2 years ago
- Terraform configuration to build a Burp Private Collaborator Server☆28Sep 16, 2018Updated 7 years ago
- A tool designed to assist with finding all sinks and sources of a web application and display these results in a digestible manner.☆560Mar 6, 2023Updated 3 years ago
- Burp with Friends☆103Jan 21, 2023Updated 3 years ago
- A curated list of amazingly awesome Burp Extensions☆3,441Aug 15, 2026Updated 2 weeks ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable…☆1,804Jun 17, 2026Updated 2 months ago
- A bash script that automates the scanning of a target network for HTTP resources through XXE☆38Dec 2, 2020Updated 5 years ago
- Methodology for high-quality web application security testing - https://github.com/tprynn/web-methodology/wiki☆215Oct 31, 2024Updated last year
- A natural evolution of Burp Suite's Repeater tool☆201Apr 15, 2026Updated 4 months ago
- Course content, lab setup instructions and documentation of our very popular Breaking and Pwning Apps and Servers on AWS and Azure hands …☆952Nov 26, 2022Updated 3 years ago
- SSRF (Server Side Request Forgery) testing resources☆2,507Oct 12, 2024Updated last year
- ☆33May 30, 2019Updated 7 years ago
- A Burp Suite content discovery plugin that add the smart into the Buster!☆378Oct 12, 2020Updated 5 years ago
- Notes about attacking Jenkins servers☆2,095Jul 10, 2024Updated 2 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- A collection of scripts to extend Burp Suite☆142Apr 8, 2019Updated 7 years ago
- CollabOzark is a simple tool which helps the researchers track SSRF, RCE, Blind XSS, XXE, External Resource Access payloads triggers.☆135Sep 25, 2019Updated 6 years ago
- Hacked together script for feeding urls into Burp's Sitemap☆95Jul 30, 2026Updated last month
- A tool for embedding XXE/XML exploits into different filetypes☆1,178Dec 16, 2024Updated last year
- Client Side Prototype Pollution Scanner☆530Sep 17, 2022Updated 3 years ago
- Everything you need about Burp Extension Generation☆158Jan 6, 2023Updated 3 years ago
- A Burp Suite Extension to extract interesting strings (key, secret, token, or etc.) from a webpage.☆314Jul 9, 2024Updated 2 years ago
- The cheat sheet about Java Deserialization vulnerabilities☆3,182May 26, 2023Updated 3 years ago
- Security Mindmap that could be useful for the infosec community when doing pentest, bug bounty or red-team assessments.☆755Apr 12, 2022Updated 4 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- DNS Rebinding Exploitation Framework☆494Apr 27, 2021Updated 5 years ago
- Piper Burp Suite Extender plugin☆128Jan 14, 2026Updated 7 months ago
- ☆699Jul 4, 2022Updated 4 years ago
- A script for installing private Burp Collaborator with free Let's Encrypt SSL-certificate☆211Jun 25, 2024Updated 2 years ago
- This will assist you in the finding of potentially vulnerable PHP code. Each type of grep command is categorized in the type of vulnerabi…☆360Mar 6, 2025Updated last year
- The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.☆75Sep 2, 2020Updated 6 years ago
- Apache Solr Injection Research☆580Jan 28, 2020Updated 6 years ago
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,973Sep 27, 2021Updated 4 years ago
- ☆523Jun 5, 2023Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ☆2,333Aug 26, 2026Updated last week
- RMIScout uses wordlist and bruteforce strategies to enumerate Java RMI functions and exploit RMI parameter unmarshalling vulnerabilities☆447Sep 7, 2022Updated 3 years ago
- ☆147Feb 17, 2022Updated 4 years ago
- Probe endpoints consuming Java serialized objects to identify classes, libraries, and library versions on remote Java classpaths.☆620Mar 4, 2021Updated 5 years ago
- This repository will serve as the "master" repo containing all trainings and tutorials done in preperation for OSWE in conjunction with t…☆951Jan 6, 2025Updated last year
- AWS Extender (Cloud Storage Tester) is a Burp plugin to assess permissions of cloud storage containers on AWS, Google Cloud and Azure.☆257Feb 23, 2022Updated 4 years ago
- Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3☆2,097Jan 2, 2024Updated 2 years ago