High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.
-
Updated
Aug 25, 2026 - Go
High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.
Burp Suite extension implementing OWASP API Security Top 10 (2023) coverage on the Montoya API — active + passive scan checks with optional Burp AI integration
Burp Suite extension for passive GraphQL reconnaissance. Catalogs operations from proxy traffic, tracks variable shapes with sample values, stores original requests per signature, and sends to Intruder with auto-marked payload positions. Supports status triage, export/import for session persistence, and batched mutation detection.
A Burp Suite extension to save, organize, and replay HTTP requests, as well as backup and restore your entire Proxy HTTP History across sessions, even on Burp Community.
burp-awesome-tls-plus: Burp Suite TLS fingerprint spoofing (JA3/JA4/ClientHello) with per-domain rules. Covers Proxy, Repeater, Intruder, Scanner. Fork of sleeyax/burp-awesome-tls.
Burp Suite extension for HTTP verb tampering testing using Montoya API.
Advanced Passive Harvester: A professional Burp Suite extension for intelligent parameter discovery. Features automated risk scoring, mutation generation, and deep extraction from JSON, JS, and HTML sources.
Burp Suite extension for automated multi-tenant IDOR/BOLA testing
A Burp Suite extension that imports Postman Collections & Environments, resolves variables, and sends requests directly to Repeater. Written in Jython.
Add a description, image, and links to the burp-suite-extension topic page so that developers can more easily learn about it.
To associate your repository with the burp-suite-extension topic, visit your repo's landing page and select "manage topics."