doyensec / protoburp
Updated version of the ProtoBurp Extension, with enhanced features and capabilities to encode and fuzz custom protobuf messages
☆36Updated last year
Alternatives and similar repositories for protoburp:
Users that are interested in protoburp are comparing it to the libraries listed below
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆31Updated last year
- A collection of utilities for building extensions using Burp's Montoya API☆47Updated 6 months ago
- Automated JavaScript Debugging Tool using CDP - Automatically sets breakpoints for specified strings/patterns in JavaScript code☆78Updated 3 weeks ago
- Simple PoC for demonstrating Race Conditions on Websockets☆56Updated last year
- Searcher for cross-site leaks (XS-Leaks)☆83Updated 2 years ago
- ☠️ Code for the Defcon Workshop☆23Updated 5 months ago
- ☆58Updated last year
- Awesome MXSS ??☆47Updated 3 months ago
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆19Updated 4 months ago
- Make better use of the embedded browser that comes by default with Burp☆41Updated last year
- Scalpel is a Burp extension for intercepting and rewriting HTTP traffic, either on the fly or in the Repeater using Python 3 scripts.☆57Updated 7 months ago
- Utility for creating ZipSlip archives☆68Updated last year
- Burp Extension to add additional functionality for pentesting websocket based applications☆88Updated 7 months ago
- Exploit code for Jira Mobile Rest Plugin SSRF (CVE-2022-26135)☆87Updated 2 years ago
- A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs☆61Updated 5 months ago
- ☆33Updated last year
- Top disclosed reports from HackerOne☆12Updated 2 months ago
- ☆70Updated 3 months ago
- Mine URLs from Browser's Heap Snapshot for fun and profit☆63Updated last year
- This extension enhances Burp Suite by adding several UI and functional features, making it more user-friendly.☆66Updated last month
- oauth-labs: an intentionally vulnerable set of OAuth 2.0 labs for security training and learning☆62Updated last month
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆113Updated 9 months ago
- Security Advisories☆32Updated last year
- Filters and highlights Proxy HTTP history for requests with potentially vulnerable parameters☆23Updated last year
- A tool which helps identifying client-side prototype polluting libraries☆37Updated 2 weeks ago
- A collection of Burp Suite Lambda Filters ~ Bambdas☆25Updated 3 months ago
- ☆83Updated 6 months ago
- CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).☆94Updated last week
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆72Updated 2 months ago
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆54Updated last year