30 open-source projects similar to bebiksior/caidoreflector, ranked by how many features they have in common. Compare stars, activity and what each one does to find the best CaidoReflector alternative.
A burp extension that add some useful function to Context Menu 添加一些右键菜单让burp用起来更顺畅
HUNT Suite is a collection of Burp Suite Pro/Free and OWASP ZAP extensions. Identifies common parameters vulnerable to certain vulnerability classes (Burp Suite Pro and OWASP ZAP). Organize testing methodologies (Burp Suite Pro and Free).
Adds a customizable "Send to..."-context-menu to your BurpSuite.
Because just a dark theme wasn't enough!
A natural evolution of Burp Suite's Repeater tool
InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable scans, and seamless Burp integration.
Burp and ZAP plugin to analyse Content-Security-Policy headers or generate template CSP configuration from crawling a Website
Burp/ZAP/Maven extension that integrate Retire.js repository to find vulnerable Javascript libraries.
This extension generates scripts to reissue a selected request. The scripts can be run outside of Burp. It can be useful to script attacks such as second order SQL injection, padding oracle, fuzzing encoded value, etc.
A Burp extension to show the Collaborator client in a tab
Burp Extension for a passive scanning JS files for endpoint links.
Released as open source by NCC Group Plc - http://www.nccgroup.trust/
Blackbox Protobuf now has an official package on PyPi under the name bbpb. The blackboxprotobuf package is an older fork
A Burp Suite extension to help pentesters to bypass WAFs or test their effectiveness using a number of techniques
Advanced Burp Suite Logging Extension
Improved decoder for Burp Suite
A Burp Suite Pro extension which augments your proxy traffic by injecting non-invasive headers designed to reveal backend systems by causing pingbacks to Burp Collaborator
This Burp Suite extension automatically detects and exploits HTTP Request Smuggling vulnerabilities using advanced desynchronization techniques developed by PortSwigger researcher James Kettle. It supports comprehensive scanning for HTTP/1.1 and HTTP/2-downgrade desync vulnerabilities,…