Open Source Vulnerability Management Platform
-
Updated
Jan 30, 2025 - Python
Open Source Vulnerability Management Platform
InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable scans, and seamless Burp integration.
Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease application security people work and allow them perform an automatic authorization tests
A Burp Suite extension to add OpenAI (GPT) on Burp and help you with your Bug Bounty recon to discover endpoints, params, URLs, subdomains and more!
Extension for Burp Suite which uses AWS API Gateway to rotate your IP on every request.
myscan 被动扫描
Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Application Security Testing (DAST).
Quick python utility I wrote to turn HTTP requests from burp suite into Cobalt Strike Malleable C2 profiles
A Burp extension helps identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations, while also converting HTTP requests to JavaScript for enhanced XSS exploitation.
A simple Burp Suite extension to crawl JavaScript (JS) files in passive mode and display the results directly on the issues
Writeups for PortSwigger WebSecurity Academy
BrowserBruter is a powerful web form fuzzing automation tool designed for web security professionals and penetration testers. This Python-based tool leverages Selenium and Selenium-Wire to automate web form fuzzing, making it easier to identify potential vulnerabilities in web applications.
Burp extension to detect alias traversal via NGINX misconfiguration at scale.
A Burp Suite Extension to extract interesting strings (key, secret, token, or etc.) from a webpage.
Roadmap for Web Application Penetration Testing | FREE Resources (Not Pirated)
burpsuite extension for check unauthorized vulnerability
Wordlist for content(directory) bruteforce discovering with Burp or dirsearch
gRPC-Web Pentesting Suite + Burp Suite Extension / Hack gRPC-Web Applications
Add a description, image, and links to the burpsuite topic page so that developers can more easily learn about it.
To associate your repository with the burpsuite topic, visit your repo's landing page and select "manage topics."