gsmith257-cyber / GraphCrawler
GraphQL automated security testing toolkit
☆308Updated 10 months ago
Alternatives and similar repositories for GraphCrawler:
Users that are interested in GraphCrawler are comparing it to the libraries listed below
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.☆187Updated 5 months ago
- Unofficial documentation for the great tool Param Miner☆176Updated 2 years ago
- graphw00f is GraphQL Server Engine Fingerprinting utility for software security professionals looking to learn more about what technology…☆591Updated last month
- The only GraphQL wordlist you'll ever need. Operations, field names, type names... Collected on more than 60k distinct GraphQL schemas.☆340Updated last year
- Escalate your SSRF vulnerabilities on Modern Cloud Environments. `surf` allows you to filter a list of hosts, returning a list of viable …☆617Updated last year
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆300Updated 2 months ago
- GQLSpection - parses GraphQL introspection schema and generates possible queries☆74Updated 6 months ago
- ☆394Updated 3 years ago
- Vulnerability Scan with Nuclei☆246Updated last month
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆618Updated 2 months ago
- Burp extension to create target specific and tailored wordlist from burp history.☆233Updated 3 years ago
- GraphQL threat framework used by security professionals to research security gaps in GraphQL implementations☆299Updated last year
- Fast and customizable vulnerability scanner For JIRA written in Python☆318Updated 2 weeks ago
- A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.☆571Updated 2 months ago
- Prototype pollution scanner using headless chrome☆198Updated 2 years ago
- CT Log Scanner☆305Updated 3 months ago
- ☆160Updated 3 months ago
- Nuclei templates written by us.☆266Updated 3 years ago
- Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.☆412Updated 3 months ago
- Golang client for querying SecurityTrails API data☆544Updated last year
- Scrapts Scrapts Scrapts☆235Updated 9 months ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆264Updated last year
- CrackQL is a GraphQL password brute-force and fuzzing utility.☆319Updated 5 months ago
- A projectdiscovery driven attack surface monitoring bot powered by axiom☆180Updated 2 years ago
- De-clutter a list of URLs☆312Updated last month
- Turbo Intruder Scripts☆220Updated 4 years ago
- A tool to scrape the AWS ranges looking for a keyword in SSL certificate data.☆229Updated last year
- Automated learning of regexes for DNS discovery☆362Updated last year
- A list of edge cases that occur in bug bounty programs, conversations on how they should be handled. The goal is to standardise the way t…☆229Updated 2 years ago