Repository navigation
fuzz
- Website
- Wikipedia
A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and checklists.
Web Fuzzing Box - Web 模糊测试字典与一些Payloads
Collection of quality safety articles. Awesome articles.
构建优化高效的渗透 fuzz 字典合集
GraphQLmap is a scripting engine to interact with a graphql endpoint for pentesting purposes. - Do not use for illegal testing ;)
OneScan 是一款用于递归目录扫描的 BurpSuite 插件
Everything for pentest. | 用于渗透测试的 payload 和 bypass 字典.
1337 Wordlists for Bug Bounty Hunting
Fuzz your Rust code with Google-developed Honggfuzz !
Fuzz test your application using your OpenAPI or Swagger API definition without coding
Black box fuzzer for web applications
qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.
Rust-based framework to Fuzz Solana programs, designed to help you ship secure code.
REST API Fuzz Testing (RAFT): Source code for self-hosted service developed for Azure, including the API, orchestration engine, and default set of security tools (including MSR's RESTler), that enables developers to embed security tooling into their CI/CD workflows