A Burp Suite extension for GraphQL security testing.
☆67Mar 29, 2026Updated 5 months ago
Alternatives and similar repositories for graphql-grip
Users that are interested in graphql-grip are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Browser-based iOS IPA security analyzer.☆85May 30, 2026Updated 3 months ago
- Browser-based Android security auditing tool.☆81Aug 7, 2026Updated 3 weeks ago
- Live runtime audit for installed Android apps. Runs on the rooted phone, serves a browser dashboard.☆32May 23, 2026Updated 3 months ago
- Android APK security analysis tool. Decompiles DEX, scans for vulns, parses manifests and certs. Runs in your browser.☆71May 14, 2026Updated 3 months ago
- Active Directory share enumeration tool☆13Apr 28, 2025Updated last year
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- WebSocket Penetration Testing Toolkit for Burp Suite☆33Mar 5, 2026Updated 5 months ago
- This tool is designed to seamlessly convert Postman collections into OpenAPI schemas. This conversion is essential for API security testi…☆12Sep 3, 2024Updated last year
- ☆25Jan 20, 2026Updated 7 months ago
- A tool for listing and extracting installed Android APKs and decrypted iOS IPAs (plus app storage) from rooted or jailbroken devices.☆39May 31, 2026Updated 3 months ago
- ☆28May 21, 2025Updated last year
- This is my personal repo, which includes bug bounty tips, a collection of tools, one-liners, and other resources I personally prefer whil…☆70Apr 25, 2025Updated last year
- ☆1,173Jan 28, 2026Updated 7 months ago
- Token Tailor is a Burp Suite Community Edition extension that aims to simplify security testing by automating JWT renewal.☆38Sep 30, 2025Updated 11 months ago
- An Android app to easily manage Frida server on your device or emulator☆138Jan 3, 2026Updated 7 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- AndroHunter☆465Mar 8, 2026Updated 5 months ago
- This repository has workflows created for https://github.com/RikunjSindhwad/Task-Ninja☆25Aug 14, 2025Updated last year
- F5 BIG-IP iControl REST vulnerability RCE exploit with Java including a testing LAB☆13May 11, 2023Updated 3 years ago
- JaelesFuzzer is a Powerful Automation tool for detecting XSS, SQLi, SSRF, Open-Redirect, etc.. Vulnerabilities in Web Applications☆22May 1, 2024Updated 2 years ago
- The Java Burp Extension version of my BypassFuzzer tool☆40Updated this week
- Grafana scanner with all public CVEs that I collected in one script to make grafana testing easier☆242Jul 7, 2026Updated last month
- Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more☆1,438Updated this week
- Auth Mutator is a Burp Suite extension that helps you experiment with mutated authentication requests while keeping the original traffic …☆16Aug 1, 2026Updated 3 weeks ago
- Formatify is a Burp Suite extension that instantly converts HTTP requests into multiple formats like cURL, Python, PowerShell, and more—s…☆31Sep 23, 2025Updated 11 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- ExecEvasion is a lightweight execution-evasion toolkit that generates command variants designed to bypass naive filters and WAF rules by …☆56Jan 31, 2026Updated 6 months ago
- JWT Auditor – Analyze, break, and understand your tokens like a pro.☆591Jul 11, 2026Updated last month
- Fast AEM scope gathering tool for all your public and private BugCrowd Programs☆10Jul 14, 2021Updated 5 years ago
- A command-line utility for auditing DNS configuration using Zonemaster API☆34Aug 21, 2023Updated 3 years ago
- IDOR Forge is an advanced and versatile tool designed to detect Insecure Direct Object Reference (IDOR) vulnerabilities in web applicatio…☆237Sep 25, 2025Updated 11 months ago
- A fast and efficient subdomain hijacking scanner that checks for takeover vulnerabilities by matching HTTP response bodies against predef…☆43Apr 12, 2026Updated 4 months ago
- Auto Frida is a powerful, all-in-one automation toolkit that handles everything from Frida installation to script injection. Zero manual …☆137Apr 15, 2026Updated 4 months ago
- A powerful Go tool for finding origin IPs of domains by querying multiple security APIs and validating results with built-in HTTP client.☆50Dec 4, 2025Updated 8 months ago
- ☆162Jan 22, 2026Updated 7 months ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- XSSRecon automates the process of testing URL parameters for reflection of a test payload rix4uni and further checks how special characte…☆55Aug 11, 2026Updated 2 weeks ago
- LMAP (large language model mapper) is like NMAP for LLM, is an LLM Vulnerability Scanner and Zero-day Vulnerability Fuzzer.☆31Oct 16, 2024Updated last year
- Android deeplink misconfiguration detector and exploitation tool☆91Feb 22, 2026Updated 6 months ago
- iOS traffic interception framework which route all device HTTP/HTTPS traffic through Burp Suite via a system-wide VPN tunnel☆47Feb 15, 2026Updated 6 months ago
- JS+ is a browser extension that captures JS URLs from specified domains and scans them with AI.☆22Mar 16, 2026Updated 5 months ago
- Claude Code Remote Code Execution☆15Feb 3, 2026Updated 6 months ago
- When "403 Forbidden" stands between you and your target, 400OK breaks through with 22 bypass techniques and 4,400+ payloads.☆28Apr 4, 2026Updated 4 months ago