Burp extension for Recursive Request Exploits (RRE) — DEFCON 2025
☆124Jan 30, 2026Updated 7 months ago
Alternatives and similar repositories for rre-burp
Users that are interested in rre-burp are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A Burp Suite extension that detects, catalogs, and exports developer comments, secrets, and keywords embedded in both HTTP response bodie…☆19Sep 18, 2025Updated 11 months ago
- Verified Entity Identity Lock (Expose hidden trust paths in your AWS IAM setup before they become security risks.)☆16Apr 20, 2026Updated 4 months ago
- XML Signature Wrapping Burp Suite Extensions☆23Dec 8, 2025Updated 8 months ago
- Adds extensibility to Burp by using a list of payloads to pattern match on HTTP responses highlighting interesting and potentially vulner…☆16Aug 4, 2023Updated 3 years ago
- Nakamoto is a 2 layer encryption tool to protect your data and your cyptocurrency☆16Aug 2, 2026Updated 3 weeks ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Burp Suite extension that enhances Burp Active Scan by adding template engine specific SSTI payloads.☆28Feb 20, 2024Updated 2 years ago
- When good OAuth apps go rogue. Documents observed OAuth application tradecraft☆88Apr 7, 2026Updated 4 months ago
- A powerful Python library and CLI tool for parsing, analyzing, and manipulating YARA rules through Abstract Syntax Tree (AST) representat…☆54Updated this week
- ☆16Jan 9, 2025Updated last year
- Library of Exploiting Last Frame Synchronization (also know as Single Packet Attack) on HTTP/3 - Manipulated version of quic-go lib☆20Jun 23, 2026Updated 2 months ago
- Azure AppHunter is an open-source tool created for security researchers, red teamers and defenders to help them identify excessive privil…☆105May 31, 2026Updated 2 months ago
- CaptainCredz is a modular and discreet password-spraying tool.☆140Aug 5, 2026Updated 3 weeks ago
- BurpSuite extension to convert requests into bcheck scripts☆34Jul 18, 2023Updated 3 years ago
- A tool designed for smuggling interactive command and control traffic through legitimate TURN servers hosted by reputable providers such …☆435Jun 9, 2026Updated 2 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- AutoPwnKey is a red teaming framework and testing tool using AutoHotKey (AHK), which at the time of creation proves to be quite evasive. …☆114Jul 21, 2025Updated last year
- Token Tailor is a Burp Suite Community Edition extension that aims to simplify security testing by automating JWT renewal.☆38Sep 30, 2025Updated 10 months ago
- Detonate redteam tools on VMs and get logs & detection status☆106Aug 14, 2026Updated 2 weeks ago
- Spotter is a comprehensive Kubernetes security scanner that uses CEL-based rules to identify security vulnerabilities, misconfigurations,…☆76Sep 13, 2025Updated 11 months ago
- Abuse trust-boundaries to bypass firewalls and network controls☆433Jul 10, 2026Updated last month
- LudusHound is a tool for red and blue teams that transforms BloodHound data into a fully functional, Active Directory replica environment…☆385Sep 3, 2025Updated 11 months ago
- .NET Post-Exploitation Utility for Abusing Strong Explicit Certificate Mappings in ADCS☆154Feb 10, 2025Updated last year
- MAD-CAT (Meow Attack Data Corruption Automation Tool) is a comprehensive security tool designed to simulate data corruption attacks again…☆38Oct 11, 2025Updated 10 months ago
- Tool that gathers a customizable set of ETW telemetry and generates user-defined detections☆56Jan 28, 2026Updated 7 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Burp Plugin to Bypass WAFs through the insertion of Junk Data☆1,503Jul 14, 2025Updated last year
- peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.☆233Apr 14, 2025Updated last year
- ☆62Sep 28, 2022Updated 3 years ago
- Bambdas collection for Burp Suite Professional and Community.☆532Jun 16, 2026Updated 2 months ago
- Hessian UTF-8 Overlong Encoding☆21Mar 9, 2024Updated 2 years ago
- WALA 学习笔记☆14Aug 8, 2023Updated 3 years ago
- Burp Suite extension that mutates ciphers to bypass TLS-fingerprint based bot detection☆499Sep 9, 2025Updated 11 months ago
- Dll injection through code page id modification in registry. Based on jonas lykk research☆16Jun 18, 2022Updated 4 years ago
- This repository hosts several snippets and file related to the BsidesLV 2024 talk about Shadow and Zombie APIs by me☆18Aug 5, 2024Updated 2 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- SOCKS5 proxy tool that uses Azure Storage services as a means of communication.☆365Aug 15, 2026Updated 2 weeks ago
- ☆113Jun 30, 2026Updated 2 months ago
- SAST + LLM Interprocedural Context Extractor☆207Oct 28, 2025Updated 10 months ago
- SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens☆172Nov 29, 2024Updated last year
- ☆532Apr 29, 2024Updated 2 years ago
- AI-powered ffuf wrapper☆803Dec 4, 2025Updated 8 months ago
- A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.☆873Updated this week