A BOLA/IDOR access-control confirmation engine — code adjudicates every verdict, not just the model, with a reproducible evidence chain.
-
Updated
Aug 15, 2026 - Python
A BOLA/IDOR access-control confirmation engine — code adjudicates every verdict, not just the model, with a reproducible evidence chain.
A lightweight, high-performance browser extension (Manifest V3) designed for penetration testers and ethical hackers. Features passive HTTP traffic inspection, automated IDOR/BOLA scoring, noise filtering, and AI-driven vulnerability analysis with PDF report generation. Built for ethical security research.
A stateful, dual-token API security scanner designed to hunt for complex authorization flaws like BOLA, BFLA, and Mass Assignment.
Automatically detect and test IDOR/BOLA vulnerabilities in real time using AI-powered object ID swapping during Burp Suite browsing sessions.
Burp Suite extension for automated multi-tenant IDOR/BOLA testing
Add a description, image, and links to the idor-discovery topic page so that developers can more easily learn about it.
To associate your repository with the idor-discovery topic, visit your repo's landing page and select "manage topics."