πA cutting edge context aware GraphQL API fuzzing tool!
β157Updated this week
Alternatives and similar repositories for GraphQLer
Users that are interested in GraphQLer are comparing it to the libraries listed below
Sorting:
- Create tar/zip archives that try to exploit zipslip vulnerability.β48Sep 20, 2024Updated last year
- πΈοΈ Blazing fast GraphQL endpoints finder using subdomain enumeration, scripts analysis and bruteforce. πΈοΈβ227May 22, 2023Updated 2 years ago
- A set of scripts to install a Burp Collaborator Server in a docker environment, using a LetsEncrypt wildcard certificate in as simple a pβ¦β30Nov 30, 2025Updated 3 months ago
- CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).β151Mar 31, 2025Updated 11 months ago
- Chrome extension for automating CSPT discoveryβ137Dec 23, 2025Updated 2 months ago
- β18Jul 30, 2024Updated last year
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!β21Aug 25, 2024Updated last year
- When good OAuth apps go rogue. Documents observed OAuth application tradecraftβ84Jan 30, 2026Updated last month
- β23Sep 20, 2024Updated last year
- Simple PoC for demonstrating Race Conditions on Websocketsβ55Sep 14, 2023Updated 2 years ago
- Java archive implant toolkit.β61Apr 20, 2025Updated 10 months ago
- PackageSpy is a versatile command-line tool designed to simplify the process of searching for packages on two popular package managersβ22Jun 19, 2024Updated last year
- A Python-based tool to create zip, tar and cpio archives to exploit common archive library issues and developer mistakesβ43Nov 28, 2025Updated 3 months ago
- β93Apr 29, 2024Updated last year
- Official code for the paper entitled "Toward Intelligent and Secure Cloud: Large Language Model Empowered Proactive Defense"β15Apr 10, 2025Updated 10 months ago
- Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services used by your company and/oβ¦β898Updated this week
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.β203Aug 5, 2024Updated last year
- A tech enumeration toolkit focused on 404 Not found pages.β26Oct 6, 2024Updated last year
- Additional active scan checks for BURPβ28Oct 3, 2024Updated last year
- A Burp Suite extension for analyzing Next.js Server Actions - server-side functions identified by hash IDs and `Next-Action` headers.β45Aug 8, 2025Updated 6 months ago
- ngrok Collaborator Link β yet another Burp Collaborator alternative for free with ngrok.β113Jan 4, 2024Updated 2 years ago
- Blazing fast GraphQL discovery & fingerprinting toolbox.β124Nov 21, 2023Updated 2 years ago
- This GitHub Action sends a reverse shell from a runner via Azure Storage Account blobsβ39Sep 25, 2024Updated last year
- Linux CS bypass techniqueβ32Feb 4, 2025Updated last year
- FuzzBuilderEx is a system to build seed corpus and fuzzing executables using the test framework automatically.β13Sep 6, 2022Updated 3 years ago
- Looks for parameters in urlsβ34Oct 14, 2024Updated last year
- Modular web-application honeypot platform built using go and ginβ63May 8, 2024Updated last year
- SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokensβ165Nov 29, 2024Updated last year
- GQLSpection - parses GraphQL introspection schema and generates possible queriesβ98Mar 6, 2025Updated 11 months ago
- π₯οΈ Windows π A Windows tool for emergency privacy: instantly deletes sensitive data and active logins to protect my information during β¦β54Jan 26, 2026Updated last month
- A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.β721Feb 3, 2026Updated 3 weeks ago
- β29Feb 4, 2026Updated 3 weeks ago
- A tool for scanning public or private AMIs for sensitive files and secrets. The tool follows the research made on AWS CloudQuarry where wβ¦β113Nov 13, 2024Updated last year
- Generate datasets of cloud audit logs for common attacksβ233Feb 13, 2026Updated 2 weeks ago
- β105Jan 3, 2023Updated 3 years ago
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.β41Dec 12, 2023Updated 2 years ago
- Provides an overview of the inner file structure of a PDFβ24Sep 26, 2022Updated 3 years ago
- A tool to uncover undocumented APIs from the AWS Console.β116Apr 29, 2025Updated 10 months ago
- A Completely Modular LLM Reverse Engineering, Red Teaming, and Vulnerability Research Framework.β54Nov 9, 2024Updated last year