awesome-repositories.comCategoriesBlog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Back to codewatchorg/burp-indicatorsofvulnerability

Open-source alternatives to Burp IndicatorsOfVulnerability

30 open-source projects similar to codewatchorg/burp-indicatorsofvulnerability, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best Burp IndicatorsOfVulnerability alternative.

  • byt3bl33d3r/crackmapexecbyt3bl33d3r avatar

    byt3bl33d3r/CrackMapExec

    9,144View on GitHub↗

    CrackMapExec is a network penetration testing framework and automated security scanner designed to assess security postures across large IP ranges. It functions as a multi-protocol security scanner and network protocol auditor used to identify vulnerabilities and misconfigurations. The tool provides capabilities for Active Directory auditing to enumerate users and permissions, as well as post-exploitation enumeration to gather system metadata and discover lateral movement paths. It includes a framework for credential spraying and harvesting across various network services. The system utilize

    Python
    View on GitHub↗9,144
  • 0xn0ne/weblogicscanner0xn0ne avatar

    0xn0ne/weblogicScanner

    2,070View on GitHub↗

    weblogic 漏洞扫描工具。目前包含对以下漏洞的检测能力:CVE-2014-4210、CVE-2016-0638、CVE-2016-3510、CVE-2017-3248、CVE-2017-3506、CVE-2017-10271、CVE-2018-2628、CVE-2018-2893、CVE-2018-2894、CVE-2018-3191、CVE-2018-3245、CVE-2018-3252、CVE-2019-2618、CVE-2019-2725、CVE-2019-2729、CVE-2019-2890、CVE-2020-2551、CVE-2020-14750、CVE-2020-14882、CVE-2020-14883

    Pythoncve-2016-0638cve-2016-3510cve-2017-10271
    View on GitHub↗2,070
  • bedefended/requesthighlighterBeDefended avatar

    BeDefended/RequestHighlighter

    5View on GitHub↗

    Burp Suite extension that automatically highlights different HTTP requests

    Java
    View on GitHub↗5
  • 1n3/blackwidow1N3 avatar

    1N3/BlackWidow

    1,804View on GitHub↗
    Pythonactiveapplicationautomated
    View on GitHub↗1,804

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Find more with AI search
  • 1n3/findsploit1N3 avatar

    1N3/Findsploit

    1,833View on GitHub↗

    Find exploits in local and online databases instantly

    Shell
    View on GitHub↗1,833
  • 1n3/sn1per1N3 avatar

    1N3/Sn1per

    10,049View on GitHub↗

    Sn1per is a vulnerability management platform and penetration testing orchestrator designed to automate reconnaissance, vulnerability scanning, and exploit verification. It functions as a dockerized security toolkit that coordinates multiple tools into a unified automated pipeline to identify security flaws across network and web assets. The platform features an attack surface manager for discovering internet-facing assets through OSINT, DNS enumeration, and certificate transparency. It distinguishes itself with an AI-powered security analyzer that uses large language models to summarize scan

    Shellattack-surfaceattack-surface-managementattacksurface
    View on GitHub↗10,049
  • anof-cyber/pycript-websocketAnof-cyber avatar

    Anof-cyber/PyCript-WebSocket

    82View on GitHub↗

    PyCript Websocket is now merge into https://github.com/Anof-cyber/PyCript, this repo is not available anymore.

    Java
    View on GitHub↗82
  • aoncyberlabs/blazortrafficprocessorAonCyberLabs avatar

    AonCyberLabs/BlazorTrafficProcessor

    30View on GitHub↗

    A BurpSuite extension to aid pentesting web applications that use Blazor Server/BlazorPack. Primary functionality includes converting BlazorPack messages to JSON and vice versa, introduces tamperability for BlazorPack serialized messages.

    Java
    View on GitHub↗30
  • arachni/arachniArachni avatar

    Arachni/arachni

    4,000View on GitHub↗

    Arachni is a dynamic application security testing vulnerability scanner and web application security tool. It functions as a distributed web audit framework that performs active and passive audits to identify security flaws such as SQL injection and cross-site scripting. The project features a JavaScript-aware web crawler that executes scripts and monitors DOM changes to analyze modern dynamic web applications. It utilizes server platform fingerprinting to target compatible security payloads and provides a grid-based system to distribute scanning workloads across multiple nodes. The tool cov

    Rubyanalysisarachniaudit
    View on GitHub↗4,000
  • auth0/repo-supervisorauth0 avatar

    auth0/repo-supervisor

    653View on GitHub↗

    Scan your code for security misconfiguration, search for passwords and secrets. :mag:

    JavaScript
    View on GitHub↗653
  • b-i-t-k/pwnfoxB-i-t-K avatar

    B-i-t-K/PwnFox

    1,325View on GitHub↗

    PwnFox is a Firefox/Burp extension that provide usefull tools for your security audit.

    JavaScript
    View on GitHub↗1,325
  • b4dpxl/burp-responsegrepperb4dpxl avatar

    b4dpxl/Burp-ResponseGrepper

    3View on GitHub↗

    This Burp extension will auto-extract and display values from HTTP Response bodies based on a Regular Expression, similarly to the "Grep - Extract" feature in Burp Intruder but will work on any Responses. This can be helpful when trying to perform manual reconnaissance or building an injection…

    Python
    View on GitHub↗3
  • baegmon/cookiemonsterbaegmon avatar

    baegmon/CookieMonster

    3View on GitHub↗

    A Burp Suite plugin to easily manage cookies

    Java
    View on GitHub↗3
  • baidu/openraspbaidu avatar

    baidu/openrasp

    2,964View on GitHub↗

    🔥Open source RASP solution

    C++
    View on GitHub↗2,964
  • 1337g/cve-2017-102711

    1337g/CVE-2017-10271

    0View on GitHub↗
    View on GitHub↗0
  • bigblackhat/ofxB

    bigblackhat/oFx

    0View on GitHub↗
    View on GitHub↗0
  • bigsizeme/burplugin-java-rcebigsizeme avatar

    bigsizeme/burplugin-java-rce

    109View on GitHub↗

    *本软件仅限用于学习交流禁止用于任何非法行为 本软件为burpsuite的一个插件,实验作品只是为插件开发做一个实验。使用burpsuite提供的API很少,希望抛砖引玉fork指正。 本版本支持elasticsearch java语言远程命令执行及文件上传 elasticsearchgroov语言远程命令执行及文件上传 struts2-005、 struts2-009、struts2-013、struts2-016、struts2-019、struts2-020、struts2-devmode、 struts2-032、struts2-033、…

    Java
    View on GitHub↗109
  • bitthebyte/eagleBitTheByte avatar

    BitTheByte/Eagle

    128View on GitHub↗

    Multithreaded Plugin based vulnerability scanner for mass detection of web-based applications vulnerabilities

    Python
    View on GitHub↗128
  • bountyyfi/lonkerobountyyfi avatar

    bountyyfi/lonkero

    929View on GitHub↗

    Lonkero - Wraps around your attack surface. Professional-grade scanner for real penetration testing. Fast. Modular. Rust.

    Rust
    View on GitHub↗929
  • 0xd0ug/burpextensions-clipboardrepeater0xd0ug avatar

    0xd0ug/burpExtensions-clipboardRepeater

    4View on GitHub↗

    The RepeaterClips extension lets you share requests with just two clicks and a paste.

    Java
    View on GitHub↗4
  • bytebutcher/burp-send-tobytebutcher avatar

    bytebutcher/burp-send-to

    169View on GitHub↗

    Adds a customizable "Send to..."-context-menu to your BurpSuite.

    Java
    View on GitHub↗169
  • capt-meelo/telewreckcapt-meelo avatar

    capt-meelo/telewreck

    97View on GitHub↗

    A Burp extension to detect and exploit versions of Telerik Web UI vulnerable to CVE-2017-9248. This extension is based on the original exploit tool written by Paul Taylor (@bao7uo) which is available at https://github.com/bao7uo/dp_crypto. Credits and big thanks to him.

    Python
    View on GitHub↗97
  • chaitin/xraychaitin avatar

    chaitin/xray

    11,612View on GitHub↗

    Xray is a security assessment tool focused on web vulnerability scanning, attack surface mapping, and technology fingerprinting. It identifies common security flaws through automated scanning and semantic analysis, while verifying findings via a custom proof-of-concept execution engine. The system distinguishes itself with a containerized vulnerability testbed used to deploy pre-configured vulnerable applications. This environment allows for the simulation of specific vulnerabilities and edge-case scenarios to validate scanner accuracy and eliminate false positives. The platform covers a bro

    Vuepassive-vulnerability-scannerpocsecurity
    View on GitHub↗11,612
  • cloudflare/flancloudflare avatar

    cloudflare/flan

    4,162View on GitHub↗

    Flan is a containerized network vulnerability scanner and security auditor. It identifies open ports and service versions across a network to detect known security weaknesses and misconfigurations. The system is designed to run within isolated container environments, utilizing configuration maps to manage target lists and secrets. It includes a dedicated mechanism for archiving scan output files and security analysis data to remote S3 buckets for long-term storage. The tool generates formatted vulnerability summaries and security reports in multiple document formats for technical analysis. I

    Python
    View on GitHub↗4,162
  • codedx/burp-extensioncodedx avatar

    codedx/burp-extension

    5View on GitHub↗

    burp-extension

    Java
    View on GitHub↗5
  • compasssecurity/burp-copy-request-responseCompassSecurity avatar

    CompassSecurity/burp-copy-request-response

    32View on GitHub↗

    Burp extension for quickly copying request/response data.

    Java
    View on GitHub↗32
  • coreyd97/burpcustomizerCoreyD97 avatar

    CoreyD97/BurpCustomizer

    586View on GitHub↗

    Because just a dark theme wasn't enough!

    Java
    View on GitHub↗586
  • coreyd97/stepperCoreyD97 avatar

    CoreyD97/Stepper

    202View on GitHub↗

    A natural evolution of Burp Suite's Repeater tool

    Java
    View on GitHub↗202
  • cybercx-sta/cmarCyberCX-STA avatar

    CyberCX-STA/cmar

    2View on GitHub↗

    Burp Plugin - Conditional Match and Replace (CMAR)

    Java
    View on GitHub↗2
  • 0x48piraj/jiraffe0

    0x48piraj/Jiraffe

    0View on GitHub↗
    View on GitHub↗0