Jump to content
YOUR-AD-HERE
HOSTING
TOOLS

Locked InQL Scanner - A Burp Extension For GraphQL Security Testing


itsMe

Recommended Posts

This is the hidden content, please

InQL Burp Suite Extension

Since version 1.0 of the tool, InQL was extended to operate within Burp Suite. In this mode, the tool will retain all the capabilities of the stand-alone script plus a handy user interface to manipulate queries.

Using the inql extension for Burp Suite, you can:

    Search for known GraphQL URL paths; the tool will grep and match known values to detect GraphQL endpoints within the target website
    Search for exposed GraphQL development consoles (GraphiQL, GraphQL Playground, and other common consoles)
    Use a custom GraphQL tab displayed on each HTTP request/response containing GraphQL
    Leverage the templates generation by sending those requests to Burp's Repeater tool
    Configure the tool by using a custom settings tab

This is the hidden content, please

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.