The Java Burp Extension version of my BypassFuzzer tool
-
Updated
Sep 14, 2026 - Java
The Java Burp Extension version of my BypassFuzzer tool
🎯 VISTA — AI-Powered Security Testing Assistant for Burp Suite. Real-time traffic analysis, 12 expert vulnerability templates, 80+ payloads, WAF detection & bypass. Supports OpenAI, Azure, and OpenRouter (FREE). Zero dependencies.
Auth Mutator is a Burp Suite extension that helps you experiment with mutated authentication requests while keeping the original traffic intact. It applies user-defined replace rules, removes authentication artefacts for unauthenticated probes, and highlights noteworthy responses so you can quickly spot interesting behaviour.
Burp Suite extension + port-based highlighter: dedupes HTTP history into a live unique-request feed and color-codes attacker/victim traffic by listener port (PwnFox-style) — built for Android/iOS multi-account IDOR/BOLA testing, with Magic Cookie, Match & Replace, and .http export for Claude Code / AI.
Burp Suite (Montoya) extension: dedupe HTTP history into an AI-ready unique feed, tag attacker/victim by listener port, and ship the set to Claude Code for IDOR/BOLA testing.
Burp Suite extension: automated IDOR detection via three-way response comparison
Laboratório didático OWASP Top 10 em Spring Boot — cada vuln em par vulnerável→exploit→corrigido, com teste JUnit provando os dois lados. SQLi · XSS · IDOR · Path Traversal · MD5→BCrypt. Java 21 · MIT.
Security-first Spring Boot 4 API with JWT auth, AES-GCM encrypted secret storage, AI-based security analytics (explainable risk scoring + z-score anomaly detection), admin monitoring APIs, Docker, and CI.
Zero-trust document vault — Spring Boot 4 + Spring Authorization Server (OAuth 2.1/OIDC, PKCE), AES-256-GCM envelope encryption, ABAC ownership checks, scoped tokens, and audit logging. Full OAuth flow tested end-to-end with Testcontainers.
Burp Suite extension for automated multi-tenant IDOR/BOLA testing
A Spring Boot web security lab demonstrating vulnerability reproduction, remediation, logging, and verification.
Intentionally vulnerable Spring Boot Events app — OWASP Top 10:2025 demo (USM FMI diploma, 2026).
To associate your repository with the idor topic, visit your repo's landing page and select "manage topics."