Trishul

Vulnerability scanner

Automated vulnerability detection tool for web applications

Burp Extension written in Jython to hunt for common vulnerabilities found in websites. Developed by Gaurav Narwani to help people find vulnerabilities and teach how to exploit them.

GitHub

235 stars
17 watching
58 forks
Language: Python
last commit: over 6 years ago

Related projects:

RepositoryDescriptionStars
xnl-h4ck3r/gap-burp-extensionAn extension for Burp Suite that identifies potential security vulnerabilities in web applications by analyzing endpoints, parameters, and generating custom target wordlists.1,278
kathanp19/gaussrfA tool for identifying potential vulnerabilities in websites by fetching known URLs and filtering out ones with open redirects or SSRF parameters.168
vulnerscom/burp-vulners-scannerA tool that searches for vulnerabilities in web applications using an external API838
codewatchorg/burp-indicatorsofvulnerabilityA Burp extension that scans application traffic for signs of vulnerabilities and potential attack targets41
bugcrowd/huntAn extension for Burp Suite that provides a structured approach to identifying and testing common vulnerability parameters.2,192
gand3lf/semgrepperAn extension to Burp Suite that integrates Semgrep for vulnerability scanning and analysis88
contrast-security-oss/burptrastAutomates vulnerability assessment and endpoint discovery for web applications using Contrast Security's Teamserver API.16
h3xstream/burp-retire-jsA tool that integrates with Burp and ZAP to identify vulnerable JavaScript libraries200
vulnerscom/burp-dirbusterA plugin designed to facilitate the use of Dirbuster in Burp Suite for discovering potential vulnerabilities.70
bishopfox/gadgetprobeTools for analyzing and exploiting vulnerabilities in Java deserialization vulnerabilities587
r0075h3ll/oralyzerA tool to identify vulnerabilities in web applications by probing for Open Redirections and other types of attacks.758
volkandindar/agarthaAn extension for a web application security testing tool that identifies vulnerabilities and exploits HTTP requests for penetration testing.355
shenril/sitadelA tool for identifying vulnerabilities in web applications using automated attacks and fingerprinting555
bayotop/off-by-slashAutomatically detects alias traversal vulnerabilities in NGINX configurations by generating and testing malicious URLs.254
directdefense/superserialA Burp Suite Extender to identify Java Deserialization vulnerabilities in client requests and server responses.9