A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and checklists.
-
Updated
Sep 27, 2021 - BlitzBasic
A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and checklists.
Web Fuzzing Box - Web 模糊测试字典与一些Payloads
Everything for pentest. | 渗透测试知识库,以 AI Agent 可执行的格式沉淀安全方法论。
GraphQLmap is a scripting engine to interact with a graphql endpoint for pentesting purposes. - Do not use for illegal testing ;)
OneScan 是一款用于递归目录扫描的 BurpSuite 插件
1337 Wordlists for Bug Bounty Hunting
Fuzz your Rust code with Google-developed Honggfuzz !
Black box fuzzer for web applications
qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.
REST API Fuzz Testing (RAFT): Source code for self-hosted service developed for Azure, including the API, orchestration engine, and default set of security tools (including MSR's RESTler), that enables developers to embed security tooling into their CI/CD workflows
property testing and verification front-end for Rust
To associate your repository with the fuzz topic, visit your repo's landing page and select "manage topics."