Skip to content
Change the repository type filter

All

    Repositories list

    • Submit Burp Suite extensions and updates to the BApp Store.
      07620Updated Jan 30, 2026Jan 30, 2026
    • enterprise-helm-charts

      Public
      Helm charts for Burp Suite DAST Kubernetes installation.
      Go Template
      9534Updated Jan 30, 2026Jan 30, 2026
    • burp-suite-enterprise-edition-ami

      Public
      1600Updated Jan 29, 2026Jan 29, 2026
    • grpc-web-coder

      Public
      Encode/Decode gRPC-Web payloads automatically. Copied from nxenon/grpc-pentest-suite
      Python
      1100Updated Jan 27, 2026Jan 27, 2026
    • xss-cheatsheet-data

      Public
      This repository contains all the XSS cheatsheet data to allow contributions from the community.
      8745200Updated Jan 27, 2026Jan 27, 2026
    • BChecks

      Public
      BChecks collection for Burp Suite Professional and Burp Suite DAST
      134763311Updated Jan 26, 2026Jan 26, 2026
    • autorize

      Public
      Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease application security people …
      Python
      24426901Updated Jan 23, 2026Jan 23, 2026
    • bubble-pop

      Public
      BurpSuite Extension for encrypting & decrypting bubble.io elasticsearch queries
      Python
      1000Updated Jan 22, 2026Jan 22, 2026
    • auraditor

      Public
      A Burp Suite extension for Lightning/Aura framework security testing with advanced action management, context editing, and comprehensive audit capabilities.
      Java
      8000Updated Jan 22, 2026Jan 22, 2026
    • Java
      1791.4k195Updated Jan 22, 2026Jan 22, 2026
    • SAML2 Burp Extension
      Java
      803301Updated Jan 22, 2026Jan 22, 2026
    • Java
      609900Updated Jan 21, 2026Jan 21, 2026
    • http-request-smuggler

      Public
      Java
      1261.2k112Updated Jan 21, 2026Jan 21, 2026
    • Burp Suite extension to perform Kerberos authentication
      Java
      181200Updated Jan 19, 2026Jan 19, 2026
    • bambdas

      Public
      Bambdas collection for Burp Suite Professional and Community.
      Java
      8248613Updated Jan 19, 2026Jan 19, 2026
    • Response Overview Extension for BurpSuite
      Kotlin
      6500Updated Jan 19, 2026Jan 19, 2026
    • HaE - BurpSuite Highlighter and Extractor
      Java
      2943200Updated Jan 19, 2026Jan 19, 2026
    • Burp Extension DPoP
      Java
      2000Updated Jan 16, 2026Jan 16, 2026
    • inql

      Public
      InQL - A Burp Extension for GraphQL Security Testing
      Kotlin
      1774900Updated Jan 15, 2026Jan 15, 2026
    • API & Workflow Manager is a Burp Suite extension that provides centralized management and organization for API endpoints during security testing. It allows secu…
      Python
      1000Updated Jan 15, 2026Jan 15, 2026
    • My own additional active scan checks.
      Kotlin
      1000Updated Jan 15, 2026Jan 15, 2026
    • piper

      Public
      Piper Burp Suite Extender plugin
      Kotlin
      151600Updated Jan 15, 2026Jan 15, 2026
    • report-lm

      Public
      Java
      2000Updated Jan 14, 2026Jan 14, 2026
    • A golang PKI in less than 1000 lines of code.
      Go
      3800Updated Jan 13, 2026Jan 13, 2026
    • api-sword

      Public
      NSFOCUS API_Sword:A Burp Suite extension, Automatically recursively collect API endpoints from any response
      Java
      14000Updated Jan 13, 2026Jan 13, 2026
    • pyburp

      Public
      BcryptMontoya is a powerful plugin for Burp Suite that allows you to effortlessly modify HTTP requests and responses passing through the Burp Suite proxy using …
      Java
      121500Updated Jan 12, 2026Jan 12, 2026
    • pycript

      Public
      Burp Suite extension for bypassing client-side encryption using custom logic for manual and automation testing.
      Java
      351100Updated Jan 12, 2026Jan 12, 2026
    • Java
      2000Updated Jan 9, 2026Jan 9, 2026
    • Automagically decode DNS Exfiltration queries to convert Blind RCE into proper RCE via Burp Collaborator
      Python
      4200Updated Jan 7, 2026Jan 7, 2026
    • get-all-parameters

      Public
      Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist
      Python
      1572700Updated Jan 6, 2026Jan 6, 2026