
burp-awesome-tls
Burp extension to evade TLS fingerprinting. Bypass WAF, spoof any browser.

Burp extension to evade TLS fingerprinting. Bypass WAF, spoof any browser.

SAML2 Burp Extension

Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist

Burp Extension for testing authorization issues. Automated request repeating and parameter value extraction on the fly.

A Burp Extension to test applications for vulnerability to the Web Cache Deception attack

Everything you need about Burp Extension Generation

A Burp Extension designed to identify argument injection vulnerabilities.

A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or LFI.

Burp extension to scan Log4Shell (CVE-2021-44228) vulnerability pre and post auth.

ZIP File Raider - Burp Extension for ZIP File Payload Testing

Burp extension scanner for CRLF injection and HTTP desync attacks, using mutated probes, WAF false-positive checks, and optional…

Burp extension for wordpress security scanning

SAML2 Burp Extension

Fuzz 401/403/404 pages for bypasses

High-speed Burp Suite extension for sending large volumes of HTTP requests with a custom stack, Python-based attack configuration, and advanced…

Burp Suite extension that discovers hidden, unlinked parameters using advanced diffing and binary search, enabling detection of web cache poisoning…

Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more

Burp Suite Extension useful to verify OAUTHv2 and OpenID security