
agartha
A Burp Suite extension for identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations. It…

A Burp Suite extension for identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations. It…

A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.

Burp Suite Extension useful to verify OAUTHv2 and OpenID security

This Burp Suite extension allows for the automatic creation and deletion of an upstream SOCKS5 proxy on popular cloud services.

Burp Suite extension for decoding Web3 JSON-RPC traffic, including smart contract function calls, responses, and ABI resolution with proxy-aware and…

Burp Suite extension enhancing Collaborator with context capture, polling history, and optional AES-encrypted authentication for private server…

SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens

A burp suite extension that enumerates infrastructure and application admin interfaces (OTG-CONFIG-005)

This extension enhances Burp Suite by adding several UI and functional features, making it more user-friendly.

Burp Suite extension to perform Kerberos authentication

Burp Suite extension to track vulnerability assessment progress

Burp Suite extension to generate Intruder payloads using Radamsa

Framework for identifying and exploiting out-of-band (OOB) application vulnerabilities with a custom DNS/token server, Burp Suite extension, and…

Burp Suite extension to encode an IP address focused to bypass application IP / domain blacklist.

This Burp Suite extension allows you to customize header with put a new header into HTTP REQUEST BurpSuite (Scanner, Intruder, Repeater, Proxy…

Radamsa fuzzer extension for Burp Suite

Burp Suite extension to detect the Next.js / React Server Components (RSC) Remote Code Execution vulnerability (CVE-2025-55182 & CVE-2025-66478).

A Burp Suite extension that brings full DOM rendering capabilities directly into Burp, enabling effective security testing of modern JavaScript-heavy…