APIKit icon indicating copy to clipboard operation
APIKit copied to clipboard

APIKit:Discovery, Scan and Audit APIs Toolkit All In One.

Results 27 APIKit issues
Sort by recently updated
recently updated
newest added

也不能右键doscan ` java.lang.NullPointerException: Cannot invoke "burp.IHttpRequestResponse.getResponse()" because "newHttpRequestResponse" is null at burp.application.apitypes.soap.ApiTypeSoap.urlAddPath(ApiTypeSoap.java:96) at burp.application.apitypes.soap.ApiTypeSoap.isFingerprintMatch(ApiTypeSoap.java:62) at burp.application.ApiScanner.detect(ApiScanner.java:30) at burp.PassiveScanner.doPassiveScan(PassiveScanner.java:45) at burp.hs6.run(Unknown Source) at java.base/java.util.concurrent.Executors$RunnableAdapter.call(Executors.java:515) at java.base/java.util.concurrent.FutureTask.run(FutureTask.java:264) at java.base/java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1130) at java.base/java.util.concurrent.ThreadPoolExecutor$Worker.run(ThreadPoolExecutor.java:630) at...

do api scan 没有日志 没有提示 是否只能应用在burp2.0以后的版本

burpsuite没有任何日志,安装插件以后 及时主动扫描也没有内容

``` java.lang.ClassNotFoundException: burp.BurpExtender at java.base/java.net.URLClassLoader.findClass(URLClassLoader.java:433) at java.base/java.lang.ClassLoader.loadClass(ClassLoader.java:586) at java.base/java.lang.ClassLoader.loadClass(ClassLoader.java:519) at java.base/java.lang.Class.forName0(Native Method) at java.base/java.lang.Class.forName(Class.java:466) at burp.ab5.a(Unknown Source) at burp.ab5.(Unknown Source) at burp.b__.a(Unknown Source) at burp.gly.lambda$panelLoaded$0(Unknown Source) at java.base/java.util.concurrent.Executors$RunnableAdapter.call(Executors.java:515) at java.base/java.util.concurrent.FutureTask.run(FutureTask.java:264)...

如题,如果actuator接口在二层目录,如/rest/mappings,自动请求mappings中的接口时不会带上二层目录,导致全部404,自动请求时可直接替换mappings,而不是直接替换整个url ![image](https://user-images.githubusercontent.com/26903390/145770836-1e9e9936-f4af-49c3-8b41-c516063c564a.png)

如题,如果actuator接口在二层目录,如/rest/mappings,自动请求mappings中的接口时不会带上二层目录,导致全部404,自动请求时可直接替换mappings,而不是直接替换整个url ![image](https://user-images.githubusercontent.com/26903390/145770836-1e9e9936-f4af-49c3-8b41-c516063c564a.png)