**S-APICONT** 是一款功能强大的 Burp Suite 扩展插件,专注于自动化收集、提取和测试 Web 应用中的 API 接口。它能够从浏览器流量中智能识别 API 端点,支持多种前端框架的路由解析,并提供批量测试和敏感信息检测功能。
☆127Mar 7, 2026Updated 4 months ago
Alternatives and similar repositories for S-APICONT
Users that are interested in S-APICONT are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- S-XIASQL 是一款专业的 Burp Suite SQL注入检测插件,能够自动化检测Web应用中的SQL注入漏洞。通过智能分析HTTP请求响应,快速识别潜在的SQL注入点,大幅提升渗透测试效率。☆96Mar 16, 2026Updated 4 months ago
- URLReplayer是一个burp插件,一个用于自动化 API 接口提取、参数解析及批量验证 的 Burp Suite 插件。旨在从 HTTP 响应中快速挖掘未公开的 API 端点并进行有效性测试。☆45Jan 15, 2026Updated 6 months ago
- api接口测试工具,包括swagger文档,asp接口文档,wsdl接口,wadl接口,一键自动跑接口☆170Mar 30, 2026Updated 3 months ago
- js主动参数提取与构造工具☆100Dec 22, 2025Updated 6 months ago
- 浏览器存储桶配置漏洞检测插件☆273Nov 27, 2025Updated 7 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- 掘地三尺(DigDeep):覆盖云安全 、小程序、APP、web等常见敏感信息泄露类型,一键挖掘源码中的密码/密钥/手机号/身份证/云服务AK、SK等近百类敏感数据。☆77Apr 12, 2026Updated 3 months ago
- MaR - Matcher and Replacer, Perform intelligent replacement based on precise matching. 精准匹配,智能替换!☆371Jun 28, 2026Updated 3 weeks ago
- APIKit 是Burp Suite 的一个API接口扫描插件,该版本APIKit是对API-Security项目的APIKit1.0进行的二开,增加了扫描开关,避免直接打开burp乱扫被抓起来☆106Dec 19, 2025Updated 7 months ago
- 基于 0.zone API 的五合一企业资产信息查询客户端程序☆15Jul 14, 2026Updated last week
- 一款用于网 页敏感信息检测,指纹识别的chrome插件☆891Jan 13, 2026Updated 6 months ago
- OneScan扩展,原项目已停更,此项目为二开项目,插件ID精简为OST☆49Updated this week
- Shiro反序列化漏洞一站式综合利用工具☆174Jan 22, 2026Updated 5 months ago
- 各类综合 upload_fuzz,smb_fuzz,tls绕过,被动指纹扫描☆72Jun 6, 2025Updated last year
- 这是一个结合 Burp Suite 扩展插件 和 ProxyPool 爬虫代理 IP 池 的集成方案,用于自动化获取、验证和管理免费代理,实现高效的 HTTP 代理切换。插件支持直接粘贴代理列表或访问 ProxyPool API URL 获取代理,支持 HTTP 和 SOC…☆32Oct 30, 2025Updated 8 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- 自动化检测 Swagger API 接口未授权访问漏洞工具☆63Mar 10, 2025Updated last year
- 通过谷歌语法自动收集敏感信息的信息搜集工具☆230Mar 20, 2026Updated 4 months ago
- LeakDetector 是一款专为红队渗透测试人员和安全研究员设计的自动化信息泄露侦察工具。☆120Jun 9, 2026Updated last month
- 基于 BurpSuite 新版 MontoyaAPI 的 SSRF 漏洞自动探测插件☆177Mar 2, 2025Updated last year
- 基于 Chrome Manifest V3 的渗透测试辅助插件,用于快速发现页面输入点、评估 CSP 风险、嗅探潜在敏感资产、识别常见前端框架指纹,并内置常用编码转换工具,帮助进行合法合规的渗透测试与安全检查☆75Mar 2, 2026Updated 4 months ago
- 目标是成为当下最完善的API挖掘工具,实现自动提取响应敏感信息、URI信息,并且对URI进行自动|手动递归检查☆264Aug 16, 2025Updated 11 months ago
- 迄今为止公开的二开瞎注插件中最强版本:Xia SQL Plus,基于 “瞎注” xia_sql二次开发。☆103Feb 26, 2026Updated 4 months ago
- 基于 Burp Montoya API 开发的全能插件,集成自动化HTTP加解密、高危漏洞扫描(Fastjson/Log4j/Shiro/Spring未授权)与安全工具联动(sqlmap/xray),支持 Burp Collaborator 与 CEYE DNSLog,专为…☆42Jun 11, 2026Updated last month
- 一款高效的 Burp Suite 插件,专注于检测 URL 路径与 XFF 头部潜在的 SQL 注入漏洞,并集成接口自动采集。☆35Apr 4, 2026Updated 3 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Muki is an active asset fingerprinting tool built for red teams — powered by 30,000+ precision signatures, proxy rotation, and intelligen…☆116Jan 13, 2026Updated 6 months ago
- JeecgBoot Go版本综合漏洞检测工具☆102Feb 24, 2026Updated 4 months ago
- 添加识别与检测异步js逻辑☆24Aug 26, 2025Updated 10 months ago
- 红队浏览器插件-检测VUE站点未授权漏洞☆898May 7, 2026Updated 2 months ago
- MPET (Multi-Protocol Exploitation Toolkit) 是一款专业的多协议安全测试工具,基于 Wails 框架构建的现代化桌面应用。它提供了对 25+ 种主流服务协议的连接测试、未授权访问检测、弱口令检测和漏洞利用能力,是安全研究人员和渗透测试…☆216Jan 22, 2026Updated 5 months ago
- ☆78Sep 10, 2025Updated 10 months ago
- FindSomething本地移植版--HeartK☆97Jul 15, 2025Updated last year
- 🚀 2024-至今 1Day 漏洞 PoC 深度研究与复现归档。涵盖 OA、ERP、安防、数通、大模型及容器等 高价值资产漏洞,实战导向,助力安全研究与合规检测。☆1,008Updated this week
- Enhanced Repeater Manager - Burp Suite 增强重放插件☆17Updated this week
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- 多维度,UI/UX友好的Burp suite越权漏洞检测插件☆32Updated this week
- 开源项目,所有项目仅供参考学习,禁止用于任何违法行为,任何违法行为需使用者本人自己承担相应法律责任。☆85Jan 17, 2026Updated 6 months ago
- Burp插件,快速探测可能存在SQL注入的请求并标记,提高测试效率☆819Feb 26, 2026Updated 4 months ago
- 一个用于测试文件上传功能安全性的 Burp Suite 插件。通过 Intruder 模块自动生成各类绕过 payload,覆盖常见的文件上传限制场景。共1000+条payload☆620Dec 24, 2025Updated 6 months ago
- 🚀 AI-Powered Red Team & Pentest Toolkit | 赋能红队与渗透测试的 AI 工具集☆118Jan 6, 2026Updated 6 months ago
- 攻防演练过程中,我们通常会用浏览器访问一些资产,但很多未授权/敏感信息/越权隐匿在已访问接口过html、JS文件等,该插件能让我们发现未授权/敏感信息/越权/登陆接口等。☆1,465Oct 3, 2024Updated last year
- 一款用于快速打点JS文件及路径扫描的单兵工具 / A single player tool for quickly scanning JS files and paths☆328Aug 24, 2025Updated 10 months ago