
sqlmap
Automatic SQL injection and database takeover tool

Automatic SQL injection and database takeover tool

A fast, simple, recursive content discovery tool written in Rust.

High-speed API and web content discovery tool that bruteforces routes using compiled Swagger datasets, supporting depth scanning, custom wordlists,…

Go client to communicate with Chaos DB API.

A fast WordPress plugin enumeration tool

AuthMatrix is a Burp Suite extension that provides a simple way to test authorization in web applications and web services.

HopLa Burp Suite Extender plugin - Brings AI capabilities, autocompletion support, and a set of useful payloads to Burp Suite

Burp Plugin to decrypt AES encrypted traffic on the fly

This script communicates with the Nessus API in an attempt to help with automating scans. Depending on the flag issued with the script, you can list…

Automated authorization testing tool that detects unauthorized access by scanning URLs with role-based credentials using YAML templates.

A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.

End to End testing of Web, API, Cloud, Events and Security

Burp Suite Extension useful to verify OAUTHv2 and OpenID security

Automated WAF assessment tool that detects firewall vendors, tests 19 attack categories with advanced evasion payloads, and provides color-coded…

A comprehensive web application security testing toolkit that combines 10 powerful penetration testing features into one tool.

This Burp Suite extension allows you to customize header with put a new header into HTTP REQUEST BurpSuite (Scanner, Intruder, Repeater, Proxy…

The Super Vulnerable Java Application (SVJA), as demonstrated in the Roniel and DaRon Podcast Show, is an Apache Struts application designed to…

Scans public code repositories and code snippet platforms to extract and validate AI service API keys with real-time dashboard and multi-format…