
SAMLRaider
SAML2 Burp Extension

SAML2 Burp Extension

A Burp Extension to test applications for vulnerability to the Web Cache Deception attack

A Burp extension to detect and exploit versions of Telerik Web UI vulnerable to CVE-2017-9248.

Burp extension to scan Log4Shell (CVE-2021-44228) vulnerability pre and post auth.

ZIP File Raider - Burp Extension for ZIP File Payload Testing

Burp extension scanner for CRLF injection and HTTP desync attacks, using mutated probes, WAF false-positive checks, and optional…

Complete exploitation toolkit for CVE-2026-3180 - WordPress Contest Gallery SQL Injection vulnerability. Features automated data extraction, WAF…

SAML2 Burp Extension

Proof of concept for CVE-2017-6640 as burp extension

Fuzz 401/403/404 pages for bypasses

Burp Suite extension that discovers hidden, unlinked parameters using advanced diffing and binary search, enabling detection of web cache poisoning…

Burp Suite extension for detecting CVE-2022-42889 (Text4Shell) vulnerability via passive scanning of HTTP requests and responses.

A Burp Suite extension to help pentesters to bypass WAFs or test their effectiveness using a number of techniques

AI-powered vulnerability scanner extension for Burp Suite with multi-provider support (Ollama, OpenAI, Claude, Gemini)

Burp Suite extension for API security testing with 15 attack types, 108+ payloads, intelligent fuzzing, BOLA/IDOR detection, AI integration, and…

A Burp Suite extension for identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations. It…

A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.

Burp Suite extension enhancing Collaborator with context capture, polling history, and optional AES-encrypted authentication for private server…