ivision-research / burpscript
☆58Updated 3 weeks ago
Alternatives and similar repositories for burpscript:
Users that are interested in burpscript are comparing it to the libraries listed below
- FlowMate, a BurpSuite extension that brings taint analysis to web applications, by tracking all parameters send to a target application a…☆156Updated 4 months ago
- SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens☆154Updated 3 months ago
- A PoC code for JSON Smuggling technique to smuggle arbitrary files through JSON☆113Updated 11 months ago
- Burp Extension to add additional functionality for pentesting websocket based applications☆91Updated 9 months ago
- A simple mutator engine which focuses on finding unknown classes of injection vulnerabilities☆64Updated last year
- Scalpel is a Burp extension for intercepting and rewriting HTTP traffic, either on the fly or in the Repeater using Python 3 scripts.☆57Updated 9 months ago
- A project for fuzzing HTTP/1.1 CL.0 Request Smuggling Attack Vectors☆85Updated last year
- A rapid HTTP downgrade smuggling scanner written in Go.☆253Updated 10 months ago
- ☆43Updated 2 weeks ago
- Automated JavaScript Debugging Tool using CDP - Automatically sets breakpoints for specified strings/patterns in JavaScript code☆84Updated 3 months ago
- 😹 Bruteforce Apache Tomcat manager login with default credentials☆101Updated last year
- ☆52Updated last week
- An extension to use Semgrep inside Burp Suite.☆88Updated last year
- A (small) web exploit framework☆83Updated last month
- Repository of AI-generated Nuclei templates for public CVEs not yet covered by existing templates, enhancing detection speed and coverage…☆72Updated 3 months ago
- Mobile Reconnaissance Framework is a powerful, lightweight and platform-independent offensive mobile security tool designed to help hacke…☆34Updated 7 months ago
- AI Powered Sensitive Information Detection☆18Updated last year
- lightyear is a tool to dump files in tedious (blind) conditions using PHP filters☆83Updated 4 months ago
- Tool to enable blind sql injection attacks against websockets using sqlmap☆58Updated last year
- Burp Suite extension for testing Passkey systems.☆65Updated last month
- A collection of utilities for building extensions using Burp's Montoya API☆47Updated 9 months ago
- Encode and Fuzz Custom Protobuf Messages in Burp Suite☆31Updated 2 weeks ago
- ☆13Updated 3 months ago
- Bounty Prompt is an Open-Source Burp Suite extension by Bounty Security that leverages advanced AI via Burp AI and Groq AI. It enables us…☆73Updated last month
- Utility for creating ZipSlip archives☆71Updated 2 years ago
- WebSocket REPL for pentesters☆217Updated 8 months ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆26Updated last year
- oauth-labs: an intentionally vulnerable set of OAuth 2.0 labs for security training and learning☆65Updated 3 months ago
- Additional resources for leaking and exploiting ObjRefs via HTTP .NET Remoting (CVE-2024-29059)☆86Updated last year
- Python code to Serialize and Unserialize java binary serialization format.☆19Updated last month