
burpcommander
Ruby command-line interface to Burp Suite's REST API
api-security-testingpenetration-testingscripting-automation+1
57

Ruby command-line interface to Burp Suite's REST API

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

AI-powered SAST scanner that finds auth bypass, IDOR, and logic bugs Semgrep/CodeQL miss. Free GitHub Action. Supports Python, JS/TS, Go, PHP, Ruby.

Dockerized exploit lab and script for CVE-2026-19478, a critical unauthenticated GitLab GraphQL code injection enabling arbitrary Ruby method calls,…