doyensec / protoburp
Updated version of the ProtoBurp Extension, with enhanced features and capabilities to encode and fuzz custom protobuf messages
☆36Updated last year
Alternatives and similar repositories for protoburp:
Users that are interested in protoburp are comparing it to the libraries listed below
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆31Updated 2 weeks ago
- A collection of utilities for building extensions using Burp's Montoya API☆47Updated 9 months ago
- Automated JavaScript Debugging Tool using CDP - Automatically sets breakpoints for specified strings/patterns in JavaScript code☆84Updated 3 months ago
- ☆60Updated 2 years ago
- Searcher for cross-site leaks (XS-Leaks)☆82Updated 2 years ago
- Simple PoC for demonstrating Race Conditions on Websockets☆56Updated last year
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated 7 months ago
- A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs☆63Updated 2 weeks ago
- Make better use of the embedded browser that comes by default with Burp☆43Updated last year
- Security Advisories☆32Updated last year
- ☆25Updated this week
- Scalpel is a Burp extension for intercepting and rewriting HTTP traffic, either on the fly or in the Repeater using Python 3 scripts.☆57Updated 9 months ago
- Tool for finding URLs, paths, secrets and generating raw HTTP requests and OpenApi specifications from config files and annotations used …☆126Updated this week
- Unicode characters that will translate a single character to multiple characters in domain names or TLD's☆40Updated 4 months ago
- ☆39Updated last month
- TheThing: an open-source tool to detect DOM Clobbering vulnerabilities☆45Updated last year
- An intentionally-vulnerable application for demonstrating the hazards of SpEL expression composition☆27Updated 6 years ago
- Slides and other material from various conference presentations.☆40Updated 3 weeks ago
- A cheatsheet for exploiting server-side SVG rasterization.☆30Updated 2 years ago
- ☆94Updated 3 years ago
- yataf extracts secrets and paths from files or urls - its best used against javascript files☆52Updated 6 months ago
- Mine URLs from Browser's Heap Snapshot for fun and profit☆63Updated last year
- Awesome MXSS ??☆48Updated 5 months ago
- For unpacking base64:ed "Save items"-content from Burp (From search + proxy history)☆50Updated 3 weeks ago
- A powerful AWS Cognito analysis and session hijacking toolkit designed for security researchers and penetration testers. CognitoHunter sp…☆20Updated 2 months ago
- ✨ Build a beautiful and simple website in literally minutes. Demo at https://beautifuljekyll.com☆21Updated 2 years ago
- A set of open-source community scripts☆61Updated 5 months ago
- Utility for creating ZipSlip archives☆71Updated 2 years ago
- oauth-labs: an intentionally vulnerable set of OAuth 2.0 labs for security training and learning☆65Updated 3 months ago
- Application for showcasing Android Deep Link and WebView Vulnerabilities☆14Updated 2 years ago