BurpSuite-Asset_Discover

Asset scanner

Identifies various asset types in HTTP responses to help find vulnerabilities

Burp Suite extension to discover assets from HTTP response.

GitHub

219 stars
12 watching
50 forks
Language: Python
last commit: over 5 years ago
asset-discoveryosintpentesting

Related projects:

RepositoryDescriptionStars
bugcrowd/huntAn extension for Burp Suite that provides a structured approach to identifying and testing common vulnerability parameters.2,192
xnl-h4ck3r/gap-burp-extensionAn extension for Burp Suite that identifies potential security vulnerabilities in web applications by analyzing endpoints, parameters, and generating custom target wordlists.1,278
contrast-security-oss/burptrastAutomates vulnerability assessment and endpoint discovery for web applications using Contrast Security's Teamserver API.16
codewatchorg/burp-indicatorsofvulnerabilityA Burp extension that scans application traffic for signs of vulnerabilities and potential attack targets41
gauravnarwani97/trishulAutomated vulnerability detection tool for web applications235
gaberust/burp_asset_saverAn extension for Burp Suite to save previously loaded assets from HTTP requests and responses.3
vulnerscom/burp-vulners-scannerA tool that searches for vulnerabilities in web applications using an external API838
secdec/attack-surface-detector-burpIdentifies web app endpoints and parameters to help detect vulnerabilities98
prodigysml/dr.-watsonAutomates discovery of website assets and vulnerabilities by matching user-defined regex patterns against Burp Suite responses.215
h3xstream/burp-retire-jsA tool that integrates with Burp and ZAP to identify vulnerable JavaScript libraries200
initroot/burpsqltruncsannerAutomatically scans endpoints for potential SQL Truncation vulnerabilities by fuzzing request parameters62
moeinfatehi/backup-finderAn extension for Burp Suite designed to scan webservers for sensitive backup files160
attackercan/burp-xss-sql-pluginAutomated tool for detecting cross-site scripting (XSS) and SQL injection vulnerabilities in web applications.44
daffainfo/match-replace-burpA collection of Burp Suite rules for identifying and exploiting vulnerabilities in web applications340
redguard/sheet-intruderA tool designed to automatically identify and report sensitive data in plain text within source code repositories.2