awesome-repositories.com
Blog
MCP
awesome-repositories.com

Entdecke die besten Open-Source-Repositories mit KI-gestützter Suche.

EntdeckenKuratierte SuchenOpen-Source-AlternativenSelf-hosted SoftwareBlogSitemap
ProjektMCP-ServerÜber unsRanking-MethodikPresse
RechtlichesDatenschutzAGB
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·

48 Repos

Awesome GitHub RepositoriesProxy Tool Extensions

Add-ons for Burp Suite, Caido, and ZAP to enhance testing.

Explore 48 awesome GitHub repositories matching part of an awesome list · Proxy Tool Extensions. Refine with filters or upvote what's useful.

Awesome Proxy Tool Extensions GitHub Repositories

Finde die besten Repos mit KI.Wir suchen mit KI nach den am besten passenden Repositories.
  • bugcrowd/huntAvatar von bugcrowd

    bugcrowd/HUNT

    2,321Auf GitHub ansehen↗

    HUNT Suite is a collection of Burp Suite Pro/Free and OWASP ZAP extensions. Identifies common parameters vulnerable to certain vulnerability classes (Burp Suite Pro and OWASP ZAP). Organize testing methodologies (Burp Suite Pro and Free).

    Identify parameters vulnerable to common security issues.

    Python
    Auf GitHub ansehen↗2,321
  • bit4woo/knifeAvatar von bit4woo

    bit4woo/knife

    1,937Auf GitHub ansehen↗

    A burp extension that add some useful function to Context Menu 添加一些右键菜单让burp用起来更顺畅

    Add useful context menu functions to Burp Suite.

    Javaburpburp-extensionsburp-plugin
    Auf GitHub ansehen↗1,937
  • wagiro/burpbountyAvatar von wagiro

    wagiro/BurpBounty

    1,806Auf GitHub ansehen↗

    Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the active and passive scanner by means of personalized rules through a very intuitive graphical interface.

    Manage and organize custom security scanning rules.

    Java
    Auf GitHub ansehen↗1,806
  • doyensec/inqlAvatar von doyensec

    doyensec/inql

    1,782Auf GitHub ansehen↗

    InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable scans, and seamless Burp integration.

    Security testing tool for GraphQL endpoints.

    Kotlin
    Auf GitHub ansehen↗1,782
  • portswigger/turbo-intruderAvatar von PortSwigger

    PortSwigger/turbo-intruder

    1,769Auf GitHub ansehen↗

    Turbo Intruder is a Burp Suite extension for sending large numbers of HTTP requests and analyzing the results.

    High-speed brute-forcing and fuzzing tool.

    Kotlin
    Auf GitHub ansehen↗1,769
  • xnl-h4ck3r/gap-burp-extensionAvatar von xnl-h4ck3r

    xnl-h4ck3r/GAP-Burp-Extension

    1,520Auf GitHub ansehen↗

    Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist

    Discover and analyze potential parameters in HTTP requests.

    Python
    Auf GitHub ansehen↗1,520
  • portswigger/param-minerAvatar von PortSwigger

    PortSwigger/param-miner

    1,437Auf GitHub ansehen↗

    This extension identifies hidden, unlinked parameters. It's particularly useful for finding web cache poisoning vulnerabilities.

    Automate discovery of hidden, unlinked parameters.

    Java
    Auf GitHub ansehen↗1,437
  • portswigger/http-request-smugglerAvatar von portswigger

    portswigger/http-request-smuggler

    1,213Auf GitHub ansehen↗

    This Burp Suite extension automatically detects and exploits HTTP Request Smuggling vulnerabilities using advanced desynchronization techniques developed by PortSwigger researcher James Kettle. It supports comprehensive scanning for HTTP/1.1 and HTTP/2-downgrade desync vulnerabilities,…

    Detect and exploit HTTP request smuggling vulnerabilities.

    Java
    Auf GitHub ansehen↗1,213
  • quitten/autorizeAvatar von Quitten

    Quitten/Autorize

    1,161Auf GitHub ansehen↗

    Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease application security people work and allow them perform an automatic authorization tests

    Automate authorization testing for web applications.

    Python
    Auf GitHub ansehen↗1,161
  • initroot/burpjslinkfinderAvatar von InitRoot

    InitRoot/BurpJSLinkFinder

    817Auf GitHub ansehen↗

    Burp Extension for a passive scanning JS files for endpoint links.

    Extract links from JavaScript files.

    Python
    Auf GitHub ansehen↗817
  • nccgroup/burpsuitehttpsmugglerAvatar von nccgroup

    nccgroup/BurpSuiteHTTPSmuggler

    744Auf GitHub ansehen↗

    A Burp Suite extension to help pentesters to bypass WAFs or test their effectiveness using a number of techniques

    Identify HTTP request smuggling vulnerabilities.

    Java
    Auf GitHub ansehen↗744
  • nccgroup/blackboxprotobufAvatar von nccgroup

    nccgroup/blackboxprotobuf

    730Auf GitHub ansehen↗

    Blackbox Protobuf now has an official package on PyPi under the name bbpb. The blackboxprotobuf package is an older fork

    Decode and modify arbitrary Protobuf messages.

    Python
    Auf GitHub ansehen↗730
  • nccgroup/burpsuiteloggerplusplusAvatar von nccgroup

    nccgroup/BurpSuiteLoggerPlusPlus

    708Auf GitHub ansehen↗

    Advanced Burp Suite Logging Extension

    Advanced logging for Burp Suite requests and responses.

    Java
    Auf GitHub ansehen↗708
  • securityinnovation/authmatrixAvatar von SecurityInnovation

    SecurityInnovation/AuthMatrix

    647Auf GitHub ansehen↗

    AuthMatrix is a Burp Suite extension that provides a simple way to test authorization in web applications and web services.

    Automate authorization and access control testing.

    Python
    Auf GitHub ansehen↗647
  • coreyd97/burpcustomizerAvatar von CoreyD97

    CoreyD97/BurpCustomizer

    586Auf GitHub ansehen↗

    Because just a dark theme wasn't enough!

    Customize the visual appearance of Burp Suite.

    Java
    Auf GitHub ansehen↗586
  • portswigger/collaborator-everywhereAvatar von PortSwigger

    PortSwigger/collaborator-everywhere

    447Auf GitHub ansehen↗

    A Burp Suite Pro extension which augments your proxy traffic by injecting non-invasive headers designed to reveal backend systems by causing pingbacks to Burp Collaborator

    Identify OAST-based vulnerabilities.

    Java
    Auf GitHub ansehen↗447
  • h3xstream/http-script-generatorAvatar von h3xstream

    h3xstream/http-script-generator

    301Auf GitHub ansehen↗

    This extension generates scripts to reissue a selected request. The scripts can be run outside of Burp. It can be useful to script attacks such as second order SQL injection, padding oracle, fuzzing encoded value, etc.

    Generate scripts for HTTP request manipulation.

    Java
    Auf GitHub ansehen↗301
  • wish-i-was/femidaAvatar von wish-i-was

    wish-i-was/femida

    284Auf GitHub ansehen↗

    Automated blind-xss search for Burp Suite

    Security testing utility for Burp Suite.

    Python
    Auf GitHub ansehen↗284
  • prodigysml/dr.-watsonAvatar von prodigysml

    prodigysml/Dr.-Watson

    217Auf GitHub ansehen↗

    Dr. Watson is a simple Burp Suite extension that helps find assets, keys, subdomains, IP addresses, and other useful information! It's your very own discovery side kick, the Dr. Watson to your Sherlock!

    Find assets, subdomains, and sensitive keys during reconnaissance.

    Python
    Auf GitHub ansehen↗217
  • h3xstream/burp-retire-jsAvatar von h3xstream

    h3xstream/burp-retire-js

    213Auf GitHub ansehen↗

    Burp/ZAP/Maven extension that integrate Retire.js repository to find vulnerable Javascript libraries.

    Detect vulnerable JavaScript libraries.

    JavaScript
    Auf GitHub ansehen↗213
Vorherige123Nächste
  1. Home
  2. Part of an Awesome List
  3. Security & Privacy
  4. Proxy Tool Extensions