How this analysis was created: This summary and feature list are AI-generated from collected project material and can contain mistakes. Stars, license and language are imported from GitHub. Inclusion does not mean that we have tested or audited this project. Check the source documentation for any feature you depend on. Learn more on our About page.
All-in-one plugin for Burp Suite for the detection and the exploitation of Java deserialization vulnerabilities
InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable scans, and seamless Burp integration.
Arachni is a dynamic application security testing vulnerability scanner and web application security tool. It functions as a distributed web audit framework that performs active and passive audits to identify security flaws such as SQL injection and cross-site scripting. The project features a JavaScript-aware web crawler that executes scripts and monitors DOM changes to analyze modern dynamic web applications. It utilizes server platform fingerprinting to target compatible security payloads and provides a grid-based system to distribute scanning workloads across multiple nodes. The tool cov
Burp and ZAP plugin to analyse Content-Security-Policy headers or generate template CSP configuration from crawling a Website
Burp/ZAP/Maven extension that integrate Retire.js repository to find vulnerable Javascript libraries.
The main features of h3xstream/burp-retire-js are: Vulnerability Scanners, Proxy Tool Extensions.
Projects with overlapping indexed features include: linkedin/sometime — A BurpSuite plugin to detect Same Origin Method Execution vulnerabilities. gosecure/csp-auditor — Burp and ZAP plugin to analyse Content-Security-Policy headers or generate template CSP configuration from crawling a… arachni/arachni — Arachni is a dynamic application security testing vulnerability scanner and web application security tool. It… doyensec/inql — InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability… federicodotta/java-deserialization-scanner — All-in-one plugin for Burp Suite for the detection and the exploitation of Java deserialization vulnerabilities. portswigger/backslash-powered-scanner — Finds unknown classes of injection vulnerabilities.