omar2535 / GraphQLer
๐A cutting edge context aware GraphQL API fuzzing tool!
โ140Updated 3 weeks ago
Alternatives and similar repositories for GraphQLer
Users that are interested in GraphQLer are comparing it to the libraries listed below
Sorting:
- CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).โ117Updated last month
- FlowMate, a BurpSuite extension that brings taint analysis to web applications, by tracking all parameters send to a target application aโฆโ158Updated 6 months ago
- Create notes during a security code review in VSCode ๐ Import your favorite SAST tool findings ๐ ๏ธ and collaborate with others ๐คโ133Updated last month
- โ64Updated last week
- boostsecurityio/lotpโ124Updated last month
- jxscout superpowers JavaScript analysis for security researchersโ103Updated this week
- FrogPost: postMessage Security Testing Toolโ64Updated this week
- tool designed for identifying vulnerabilities in open source codebases at scale. It can gather and filter on key repository metrics such โฆโ226Updated 3 months ago
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagramsโ104Updated 3 months ago
- truffleproc โ hunt secrets in process memory (TruffleHog & gdb mashup)โ118Updated last year
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.โ41Updated last year
- โ114Updated last year
- A research project to add some brrrrrr to Burpโ160Updated 3 months ago
- Burp Suite extension for testing Passkey systems.โ69Updated last month
- A collection of Turbo Intruder scripts.โ59Updated 3 months ago
- โ175Updated 6 months ago
- Chrome extension for automating CSPT discoveryโ82Updated 2 weeks ago
- Tool to detect and monitor GitHub org users' public repositories for secrets and sensitive filesโ218Updated 3 weeks ago
- โ190Updated 6 months ago
- Simple PoC for demonstrating Race Conditions on Websocketsโ55Updated last year
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.โ190Updated 9 months ago
- A web CTF for training developers in bug hunting and secure coding!โ99Updated 4 months ago
- SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokensโ158Updated 5 months ago
- ๐งช Correlate Semgrep scans with Python test coverage to prioritize SAST findings and get bug fix suggestions via a self-hosted LLM.โ39Updated 5 months ago
- Manager of third-party sources of Semgrep rules ๐โ81Updated 9 months ago
- Nuclei plugins to audit Chrome extensionsโ64Updated 9 months ago
- A simple script which implements different Cognito attacks such as Account Oracle or Priviledge Escalationโ103Updated last year
- A GraphQL enumeration and extraction toolโ131Updated 2 years ago
- GitHub Actions Cache Native Malware - for Educational and Research Purposes only.โ64Updated 2 weeks ago
- Octoscan is a static vulnerability scanner for GitHub action workflows.โ210Updated last month