FazBrowse GitHub Viewer | Trending |
URL:
| Home
Tools: [Download Repo ZIP]   [Original HTTPS Page]

matrix/Burp-NoSQLiScanner: This extension provides a way to discover NoSQL injection vulnerabilities. · GitHub

Repository files navigation

Burp NoSQLi Scanner

Currently Burp doesn't have an engine that detects NoSQL Injection, so I created this plugin to add support
using my preferred language, Java (it's a joke, it's a trap) :D
Happy pentest :)

Limitations

1 - Parallel scanning of multiple parameter at once is not supported for now.
Consequently, at the moment the plugin does not detect derived problems, such as authentication bypass.

2 - No tab in the Burp UI for now.

I'm lazy, but sooner or later I will resolve all two :)

3 - Exploiting is not supported, do it manually if needed.

Building

Refer to BUILD.md for instructions on how to build it from source.

About

This extension provides a way to discover NoSQL injection vulnerabilities.

Resources

Stars

31 stars

Watchers

1 watching

Forks

Releases

Packages

Contributors

Languages


Back | FazBrowse Home | New Git URL