
WP-Contest-Gallery-28.1.4-Exploit
Complete exploitation toolkit for CVE-2026-3180 - WordPress Contest Gallery SQL Injection vulnerability. Features automated data extraction, WAF…

Complete exploitation toolkit for CVE-2026-3180 - WordPress Contest Gallery SQL Injection vulnerability. Features automated data extraction, WAF…

Python-based Burp Suite extension is designed to detect the presence of CVE-2025-31324

Burp extension to scan Log4Shell (CVE-2021-44228) vulnerability pre and post auth.

Python exploit for RCE in Wordpress

CVE-2026-48909 - Unauthenticated PHP Object Injection to RCE exploit for Joomla SP LMS extension versions <= 4.1.3. Exploits lmsOrders cookie…

Turn any web app into an API. Chrome extension captures browser traffic, auto-generates schemas, lets AI replay APIs directly. No official API needed.

High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.

Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more

A Burp Extension to test applications for vulnerability to the Web Cache Deception attack

Burp plugin able to find reflected XSS on page in real-time while browsing on site

Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease application…

Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the active and…

A Burp extension to detect and exploit versions of Telerik Web UI vulnerable to CVE-2017-9248.

ZIP File Raider - Burp Extension for ZIP File Payload Testing

SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens

JavaScript beacons and C2 to be used for XSS payload or post exploitation implants on webapp servers or desktop software to monitor users and…

Extension for Burp Suite which uses AWS API Gateway to rotate your IP on every request.

Burp Suite extension for automated detection and exploitation of HTTP request smuggling vulnerabilities, supporting HTTP/1.1 and HTTP/2-downgrade…