High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.
-
Updated
Sep 22, 2026 - Go
High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.
Burp Suite extension for passive GraphQL reconnaissance. Catalogs operations from proxy traffic, tracks variable shapes with sample values, stores original requests per signature, and sends to Intruder with auto-marked payload positions. Supports status triage, export/import for session persistence, and batched mutation detection.
Burp Suite extension implementing OWASP API Security Top 10 (2023) coverage on the Montoya API — active + passive scan checks with optional Burp AI integration
A Burp Suite extension to save, organize, and replay HTTP requests, as well as backup and restore your entire Proxy HTTP History across sessions, even on Burp Community.
WordlistHub is a Burp Suite extension that lets pentesters browse, search, download, cache, and use wordlist like SecLists and custom GitHub wordlists directly inside Burp. Select a wordlist and stream it straight into Intruder—no more switching to GitHub, downloading files, or copying and pasting payloads manually.
An autonomous AI Bug Bounty platform that intercepts HTTP traffic, performs deep DOM recon, chains vulnerabilities, and generates PoC exploits entirely on its own.
Burp Suite extension for authorisation testing: replays requests as multiple identities and unauthenticated, with scripted session maintenance for short-lived logins
burp-awesome-tls-plus: Burp Suite TLS fingerprint spoofing (JA3/JA4/ClientHello) with per-domain rules. Covers Proxy, Repeater, Intruder, Scanner. Fork of sleeyax/burp-awesome-tls.
Burp Suite extension that turns a request or response into a clean, report-ready PoC screenshot: hides browser noise headers, blurs secrets, removes lines. Repeater, Logger and Proxy.
Burp Suite extension for HTTP verb tampering testing using Montoya API.
Advanced Passive Harvester: A professional Burp Suite extension for intelligent parameter discovery. Features automated risk scoring, mutation generation, and deep extraction from JSON, JS, and HTML sources.
Burp Suite extension for automated multi-tenant IDOR/BOLA testing
A Burp Suite extension that imports Postman Collections & Environments, resolves variables, and sends requests directly to Repeater. Written in Jython.
To associate your repository with the burp-suite-extension topic, visit your repo's landing page and select "manage topics."