burp
There are 192 repositories under burp topic.
evilc0deooo/PentesterSpecialDict
构建并优化高效的渗透 Fuzz 字典,提升网络安全从业人员的渗透测试效率。
bit4woo/knife
A burp extension that add some useful function to Context Menu 添加一些右键菜单让burp用起来更顺畅
f0ng/captcha-killer-modified
captcha-killer的修改版,支持关键词识别base64编码的图片,添加免费ocr库,用于验证码爆破,适配新版Burpsuite
d3vilbug/HackBar
HackBar plugin for Burpsuite
sleeyax/burp-awesome-tls
Burp extension to evade TLS fingerprinting. Bypass WAF, spoof any browser.
alphaSeclab/awesome-burp-suite
Awesome Burp Suite Resources. 400+ open source Burp plugins, 400+ posts and videos.
f0ng/autoDecoder
Burp插件,根据自定义来达到对数据包的处理(适用于加解密、爆破等),类似mitmproxy,不同点在于经过了burp中转,在自动加解密的基础上,不影响APP、网站加解密正常逻辑等。
botesjuan/Burp-Suite-Certified-Practitioner-Exam-Study
Burp Suite Certified Practitioner Exam Study
vaycore/OneScan
OneScan 是一款用于递归目录扫描的 BurpSuite 插件
synacktiv/HopLa
HopLa Burp Suite Extender plugin - Adds autocompletion support and useful payloads in Burp Suite
Ebryx/AES-Killer
Burp Plugin to decrypt AES encrypted traffic on the fly
nccgroup/blackboxprotobuf
Blackbox Protobuf is a set of tools for working with encoded Protocol Buffers (protobuf) without the matching protobuf definition.
modzero/mod0BurpUploadScanner
HTTP file upload scanner for Burp Proxy
0x4D31/burpa
Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Application Security Testing (DAST).
alphaSeclab/awesome-cyber-security
[Draft]Awesome Cyber Security Resource Collection. Currently contains 8000+ open source repositories, and not very well classified. For each repository, extra info included: star count, commit count, last update time. This is the DRAFT version.
CompassSecurity/SAMLRaider
SAML2 Burp Extension
xsscx/Commodity-Injection-Signatures
Commodity Injection Signatures, Malicious Inputs, XSS, HTTP Header Injection, XXE, RCE, Javascript, XSLT
root4loot/rescope
Bugbounty scope tool
P3GLEG/PwnBack
Burp Extender plugin that generates a sitemap of a website using Wayback Machine
NetsOSS/headless-burp
Automate security tests using Burp Suite.
cujanovic/Content-Bruteforcing-Wordlist
Wordlist for content(directory) bruteforce discovering with Burp or dirsearch
putsi/privatecollaborator
A script for installing private Burp Collaborator with free Let's Encrypt SSL-certificate
bl4de/research
Bug Bounty writeups, Vulnerability Research, Tutorials, Tips&Tricks
forcesunseen/graphquail
Burp Suite extension that offers a toolkit for testing GraphQL endpoints.
nxenon/grpc-pentest-suite
gRPC-Web Pentesting Suite + Burp Suite Extension
moeinfatehi/Backup-Finder
A burp suite extension that reviews backup, old, temporary and unreferenced files on web server for sensitive information (OWASP WSTG-CONF-04, OTG-CONFIG-004)
Hack-Free/HackBar
Firefox and Google Chrome Extension of HackBar without license
kapytein/jsonp
jsonp is a Burp Extension which attempts to reveal JSONP functionality behind JSON endpoints.
six2dez/burp-bounty-profiles
Burp Bounty profiles compilation, feel free to contribute!
GoSecure/csp-auditor
Burp and ZAP plugin to analyse Content-Security-Policy headers or generate template CSP configuration from crawling a Website
silentsignal/burp-requests
Copy as requests plugin for Burp Suite
hvqzao/burp-wildcard
Burp extension intended to compact Burp extension tabs by hijacking them to own tab.
SNGWN/Burp-Suite-Pro
Get Burp Suite Professional for Free on || https://sites.google.com/view/pentesting-club/home
0xAnuj/Blinks
Blinks is a powerful Burp Suite extension that automates active scanning with Burp Suite Pro and enhances its functionality. With the integration of webhooks, this tool sends real-time updates whenever a new issue is identified, directly to your preferred endpoint. No more waiting for final reports – you get instant, actionable insights! 🛠️
Anof-cyber/Pentest-Mapper
A Burp Suite Extension for pentester and bug bounty hunters an to maintain checklist, map flows, write test cases and track vulnerabilities
thomaspatzke/WASE
The Web Audit Search Engine - Index and Search HTTP Requests and Responses in Web Application Audits with ElasticSearch