reflected-parameters

Parameter vulnerability exploit toolkit

Tools and techniques for exploiting reflected parameter vulnerabilities in Java-based applications

GitHub

19 stars
3 watching
8 forks
Language: Java
last commit: almost 5 years ago

Related projects:

Repository Description Stars
portswigger/html5-auditor An HTML validation and security testing tool for identifying vulnerabilities in web applications 4
portswigger/backslash-powered-scanner An extension for Burp Suite that scans for unknown classes of injection vulnerabilities using a novel approach 643
portswigger/httpoxy-scanner Tools to help identify vulnerabilities in web applications using HTTPoxy scanning. 90
portswigger/param-miner An extension tool used to identify hidden parameters in web requests 1,273
portswigger/http-request-smuggler An extension for Burp Suite to help identify and exploit HTTP Request Smuggling vulnerabilities. 964
portswigger/json-decoder A set of BurpSuite extensions for pentesting and testing 10
portswigger/command-injection-attacker An OS command injection detection and exploitation tool that provides methodologies and software for identifying and exploiting vulnerabilities in applications. 106
portswigger/random-ip-address-header This Java project generates and manipulates HTTP headers to include random IP addresses for testing and development purposes. 6
portswigger/additional-scanner-checks A collection of passive scanner checks to identify security vulnerabilities in web applications 27
portswigger/replicator An extension for the Burp Suite toolset to help developers reproduce issues discovered by pen testers 70
portswigger/example-scanner-checks A Java-based toolset that provides custom scanning checks and techniques for extending Burp Suite's built-in scanning capabilities. 15
electricalwind/data7 Automatically aggregates vulnerability reports and patches into a dataset for analysis 40
portswigger/active-scan-plus-plus An extension to Burp Suite's scanning capabilities designed to identify application behavior of interest to advanced testers. 209
hasecuritysolutions/vulnwhisperer Automates vulnerability scanning and reporting by integrating multiple scanners into a unified platform 1,362
hannah-portswigger/websocketturbointruder An extension for web browser development tools to test WebSocket protocols by sending custom messages and analyzing responses. 14