Dr.-Watson

Asset scanner

Automates discovery of website assets and vulnerabilities by matching user-defined regex patterns against Burp Suite responses.

Dr. Watson is a simple Burp Suite extension that helps find assets, keys, subdomains, IP addresses, and other useful information! It's your very own discovery side kick, the Dr. Watson to your Sherlock!

GitHub

214 stars
20 watching
28 forks
Language: Python
last commit: about 5 years ago

Related projects:

Repository Description Stars
redhuntlabs/burpsuite-asset_discover Identifies various asset types in HTTP responses to help find vulnerabilities 219
gauravnarwani97/trishul Automated vulnerability detection tool for web applications 234
phefley/burp-javascript-security-extension A tool that scans web pages for security vulnerabilities in JavaScript resources 22
moeinfatehi/backup-finder An extension for Burp Suite designed to scan webservers for sensitive backup files 160
bit4woo/domain_hunter Automatically discovers and analyzes an organization's online presence 666
cys4srl/sensitivediscoverer An extension for Burp Suite to automatically search for sensitive strings in HTTP messages 42
vsec7/burpsuite-xkeys An extension for Burp Suite to identify and extract interesting strings from web pages 251
seisvelas/san-scanner An extension for Burp Suite that helps discover Subject Alt Names in SSL certificates 3
thomashartm/burp-aem-scanner An AEM-focused plugin to detect and automate security checks for Adobe Experience Manager CMS installations 74
fcavallarin/burp-dom-scanner An extension to Burp Suite that scans and crawls Single Page Applications using a Chromium browser 99
xnl-h4ck3r/gap-burp-extension An extension for Burp Suite that identifies potential security vulnerabilities in web applications by analyzing endpoints, parameters, and generating custom target wordlists. 1,253
minamo7sen/burp-js-miner Automates discovery of secrets and vulnerabilities in static web files 54
ricardojba/poi-slinger Automatically identifies serialization issues in PHP applications by forcing them to perform DNS lookups with serialized objects 42
darryllane/bluto Tools for gathering information about and exploiting vulnerabilities in domains 619
kudoai/duckduckgpt An AI-powered search engine extension that integrates with DuckDuckGo to provide instant responses. 194