
BurpAPISecuritySuite
Burp Suite extension for API security testing with 15 attack types, 108+ payloads, intelligent fuzzing, BOLA/IDOR detection, AI integration, and…

Burp Suite extension for API security testing with 15 attack types, 108+ payloads, intelligent fuzzing, BOLA/IDOR detection, AI integration, and…

Text4Shell scanner for Burp Suite

A Burp Suite extension that integrates Dalfox XSS scanner directly into your workflow.

Penetration test of a Drupal web app — CVE-2018-7600 (Drupalgeddon 2) exploited using Nmap, Burp Suite & Metasploit | Internship @ BB CyberSec

A Burp Extension designed to identify argument injection vulnerabilities.

This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 solely and…

GUI Burp Plugin to ease discovering of security holes in web applications

Ruby command-line interface to Burp Suite's REST API


Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Fast XSS scanner with parameter analysis, WAF fingerprinting, and DOM/AST verification. Supports reflected, stored, and DOM-based XSS detection via…

Vulnerable REST API with OWASP top 10 vulnerabilities for security testing

An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses

Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision

Rust-powered HTTP Request Smuggling Scanner.
