An open API service indexing awesome lists of open source software.

https://github.com/mathis2001/burp-suite-cert-ressources

Notes and ressources from Burp Suite Academy learning
https://github.com/mathis2001/burp-suite-cert-ressources

Last synced: 5 months ago
JSON representation

Notes and ressources from Burp Suite Academy learning

Awesome Lists containing this project

README

          

# Burp-Suite-Cert-Ressources
Notes and ressources from Burp Suite Academy learning

## Useful Burp Extensions

- Active Scan++
- AutoRepeater
- HTTP Request Smuggler
- Collaborator Everywhere
- Log4shell everywhere
- JSON Beautifier
- Sitemap Extractor
- Param-miner
- JSON WEB Tokens
- Java Deserialization Scanner
- Web Cache Deception Scanner
- Autorize
- BurpJSLinkFinder
- Turbo Intruder
- Server-side prototype pollution scanner
- SQLiPy sqlmap integration
- Upload Scanner

## Useful tools

Almost Everything can be done only with Burp Suite but you can help with one of these tools for some vulnerabilities

- SQLmap
- Ghauri
- ysoserial
- Hashcat (maybe)

## Useful browser extension

- DOM Invader
- Cookie editor
- FoxyProxy
- MessPostage

## other resources

https://github.com/frank-leitner/portswigger-websecurity-academy/tree/main

https://github.com/DingyShark/BurpSuiteCertifiedPractitioner

https://github.com/botesjuan/Burp-Suite-Certified-Practitioner-Exam-Study

![image](https://github.com/mathis2001/Burp-Suite-Cert-Ressources/assets/40497633/e0e64678-d5de-46a0-967f-82deaa5562bf)