
BurpSuite plugin for HTTP packet analysis and fuzzing dictionary generation. Extracts parameters, paths, and files from requests, counts frequency, and generates payloads for Intruder-based vulnerability discovery.
README Version: [English | 简体中文]
CaA is an auxiliary project in the field of cybersecurity (vulnerability research), primarily used for analyzing and dissecting HTTP protocol packets. It extracts information such as parameters, paths, files, and parameter values from HTTP packets, and counts their frequency of occurrence, helping users build practical and operationally valuable Fuzzing dictionaries. In addition, CaA can generate various types of HTTP requests that can be used with BurpSuite Intruder for Fuzzing tasks.
The design concept of CaA originates from Web Fuzzing technology, aiming to help users uncover hidden vulnerability surfaces. By collecting, analyzing, and organizing information, CaA enables users to achieve true data mining.
Source of Inspiration:
Awards and Recognitions:
Notes:
Plugin Installation: Extender - Extensions - Add - Select File - Next
When you load CaA for the first time, it will automatically create the configuration file Config.json and the database file CaA.db:
~/.config/CaA/%USERPROFILE%/.config/CaA/In addition, you can also choose to place the configuration files in the /.config/CaA/ directory under the same folder as the CaA Jar package, for easier offline portability.
Extension-generated - CaA Payload Generator. Lastly, don't forget to disable URL encoding.
Types of Collected Information:
Generated Payload Information:
| Interface Name | Interface Display |
|---|
We appreciate everyone's support for the project. The following list is sorted based on the time of appreciation and is not in any particular order. If there are any omissions, please contact the project author for additions.
If you find CaA useful, you can show your appreciation by donating to the author, giving them the motivation to continue updating and improving it!
| Databoard (Data Collection) | ![]() |
| Config (Configuration Management) | ![]() |
| Generator (Payload Generation) | ![]() |
| CollectInfo (Data Display) | ![]() |
| ID | Amount |
|---|
| 树则 | 18.80 CNY |
| 蒙蒙大 | 10.00 CNY |
| 耳东 | 20.00 CNY |
| Oyst3r | 10.00 CNY |
| NOP Team | 88.00 CNY |
| 城上 | 188.99 CNY |
| Shu2e | 50.00 CNY |
| Kite | 200.00 CNY |
| Hui哥 | 10.00 CNY |