GAP-Burp-Extension
Vulnerability scanner
An extension for Burp Suite that identifies potential security vulnerabilities in web applications by analyzing endpoints, parameters, and generating custom target wordlists.
Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist
1k stars
13 watching
135 forks
Language: Python
last commit: 4 months ago Related projects:
Repository | Description | Stars |
---|---|---|
bugcrowd/hunt | An extension for Burp Suite that provides a structured approach to identifying and testing common vulnerability parameters. | 2,183 |
codewatchorg/burp-indicatorsofvulnerability | A Burp extension that scans application traffic for signs of vulnerabilities and potential attack targets | 41 |
vulnerscom/burp-vulners-scanner | A tool that searches for vulnerabilities in web applications using an external API | 834 |
gauravnarwani97/trishul | Automated vulnerability detection tool for web applications | 234 |
nucleus-security/nucleus-burp-extension | An extension allowing Burp Suite scans to be pushed to the Nucleus platform for vulnerability analysis and reporting | 3 |
portswigger/backslash-powered-scanner | An extension for Burp Suite that scans for unknown classes of injection vulnerabilities using a novel approach | 637 |
wagiro/burpbounty | A tool that allows users to enhance and customize the vulnerability scanning capabilities of Burp Suite using a graphical interface. | 1,680 |
vulnerscom/burp-dirbuster | A plugin designed to facilitate the use of Dirbuster in Burp Suite for discovering potential vulnerabilities. | 70 |
nccgroup/argumentinjectionhammer | An extension that identifies argument injection vulnerabilities in web applications using payloads and detection techniques | 118 |
gand3lf/semgrepper | An extension to Burp Suite that integrates Semgrep for vulnerability scanning and analysis | 87 |
h3xstream/burp-retire-js | A tool that integrates with Burp and ZAP to identify vulnerable JavaScript libraries | 200 |
portswigger/json-decoder | Tools for analyzing and manipulating HTTP requests and responses in BurpSuite | 10 |
silentsignal/activescan3plus | A modified Burp Suite extension that enhances vulnerability scanning capabilities by detecting and exploiting various injection vulnerabilities. | 31 |
volkandindar/agartha | An extension for a web application security testing tool that identifies vulnerabilities and exploits HTTP requests for penetration testing. | 355 |
attackercan/burp-xss-sql-plugin | Automated tool for detecting cross-site scripting (XSS) and SQL injection vulnerabilities in web applications. | 44 |