burp-plugin topic

List burp-plugin repositories
trafficstars

openapi-parser

187
Stars
51
Forks
Watchers

Parse OpenAPI documents into Burp Suite for automating OpenAPI-based APIs security assessments (approved by PortSwigger for inclusion in their official BApp Store).

auth_analyzer

180
Stars
46
Forks
Watchers

Burp Extension for testing authorization issues. Automated request repeating and parameter value extraction on the fly.

mssqli-duet

92
Stars
20
Forks
Watchers

SQL injection script for MSSQL that extracts domain users from an Active Directory environment based on RID bruteforcing

burp-suite-error-message-checks

64
Stars
26
Forks
Watchers

Burp Suite extension to passively scan for applications revealing server error messages

burp-shell-fwd-lfi

70
Stars
14
Forks
Watchers

A Burp Suite plugin/extension that offers a shell in Burp. Both useful for OS Command injection and LFI exploration

burp-sensitive-param-extractor

107
Stars
15
Forks
Watchers

burpsuite extension for check and extract sensitive request parameter

burp-info-extractor

84
Stars
7
Forks
Watchers

burpsuite extension for extract information from data

burp-aem-scanner

73
Stars
11
Forks
Watchers

Burp Scanner extension to fingerprint and actively scan instances of the Adobe Experience Manager CMS. It checks the website for common misconfigurations and security holes.

BitBlinder

103
Stars
25
Forks
Watchers

BurpSuite extension to inject custom cross-site scripting payloads on every form/request submitted to detect blind XSS vulnerabilities

lazyCSRF

83
Stars
15
Forks
Watchers

A more useful CSRF PoC generator on Burp Suite