
Airachnid-Burp-Extension
A Burp Extension to test applications for vulnerability to the Web Cache Deception attack

A Burp Extension to test applications for vulnerability to the Web Cache Deception attack

A Burp Extension designed to identify argument injection vulnerabilities.

A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or LFI.

A Burp extension to detect and exploit versions of Telerik Web UI vulnerable to CVE-2017-9248.

Burp extension to scan Log4Shell (CVE-2021-44228) vulnerability pre and post auth.

Burp Extension for collaboration in Faraday

Burp extension for wordpress security scanning

Complete exploitation toolkit for CVE-2026-3180 - WordPress Contest Gallery SQL Injection vulnerability. Features automated data extraction, WAF…

Fuzz 401/403/404 pages for bypasses

Burp Suite extension that discovers hidden, unlinked parameters using advanced diffing and binary search, enabling detection of web cache poisoning…

Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more

Burp Suite Extension useful to verify OAUTHv2 and OpenID security

Burp Suite extension for detecting CVE-2022-42889 (Text4Shell) vulnerability via passive scanning of HTTP requests and responses.

A Burp Suite extension that integrates OpenAI's GPT to perform an additional passive scan for discovering highly bespoke vulnerabilities and enables…

Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the active and…

InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable scans, and…

Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease application…

High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.