dreadnode / burpferenceLinks
A research project to add some brrrrrr to Burp
☆196Updated 11 months ago
Alternatives and similar repositories for burpference
Users that are interested in burpference are comparing it to the libraries listed below
Sorting:
- A collection of Turbo Intruder scripts.☆66Updated 11 months ago
- FrogPost: postMessage Security Testing Tool☆105Updated last month
- Verizon Burp Extensions: AI Suite☆141Updated 8 months ago
- Abuse trust-boundaries to bypass firewalls and network controls☆385Updated 5 months ago
- FlowMate, a BurpSuite extension that brings taint analysis to web applications, by tracking all parameters send to a target application a…☆164Updated 2 months ago
- ☆233Updated 3 weeks ago
- CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to …☆125Updated last year
- Certainly is a offensive security toolkit to capture large amounts of traffic in various network protocols in bitflip and typosquat scena…☆223Updated last year
- ☆101Updated last month
- A Burp extension to help pentesters copy requests / responses for reports.☆51Updated 6 months ago
- A smarter web fuzzing tool that combines local LLM models and ffuf to optimize directory and file discovery☆378Updated last year
- Enumeration/exploit/analysis/download/etc pentesting framework for GCP; modeled like Pacu for AWS; a product of numerous hours via @Webbi…☆275Updated 7 months ago
- CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).☆152Updated 9 months ago
- WhereToGo - is a list of popular services that might be used in organizations. By having an account of the user - you can try to find ent…☆128Updated 3 years ago
- Burp Suite extension for testing Passkey systems.☆75Updated 9 months ago
- Scripts to download every Wordpress plugin (updated in the last 2 years) and run Semgrep over the lot of it while storing output in a dat…☆89Updated 11 months ago
- LLM Testing Findings Templates☆75Updated last year
- A Go-based utility that processes input through multiple AI models concurrently (OpenAI, Claude, and Gemini) and provides a summarized co…☆87Updated 6 months ago
- ☆194Updated 8 months ago
- A web CTF for training developers in bug hunting and secure coding!☆100Updated last year
- 🔍A cutting edge context aware GraphQL API fuzzing tool!☆156Updated this week
- A YAML based format for describing tools to LLMs, like man pages but for robots!☆82Updated 8 months ago
- The Template Injection Playground allows to test a large number of the most relevant template engines for template injection possibilitie…☆56Updated last week
- Secrets Ninja is an GUI tool for validating & investigating API keys discovered during pentesting & bug bounty hunting.☆157Updated last month
- ai-based domain name generation☆100Updated 11 months ago
- gRPC Goat is a "Vulnerable by Design" lab created to provide an interactive, hands-on playground for learning and practicing gRPC securit…☆50Updated 3 months ago
- SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens☆163Updated last year
- ☆106Updated last year
- ☆127Updated last week
- QRFuzz, a fuzzing toolkit to test malicious QR Codes in mobile applications☆46Updated last year