# d3vilbug/HackBar

HackBar plugin for Burpsuite

Repository: https://github.com/d3vilbug/HackBar
Canonical: https://ross.abutalabs.com/products/hackbar
Language: Java
License: MIT
License Family: permissive
Topics: hackbar, burp-plugin, burp-extensions, burpsuite-extender, burp, burpsuite, burp-ui
Last push: 2021-04-15T11:26:55+00:00

## Health v2 (maintenance only)
Score: 23/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 0, release rhythm 8, longevity 100
- inputs: {"age_days": 2922, "days_push": 1966, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: none
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 1632, forks 257 (observed 2026-08-28T04:05:14.193194+00:00)

## What it is
A Burp Suite plugin that adds a HackBar panel for quickly injecting common payloads like SQLi and XSS during manual web application testing. It is distributed as a JAR and loaded through Burp Suite's extension mechanism.

## Use cases
- inject sql injection payloads into http requests while testing with burp suite
- quickly test xss payloads against web forms from inside burp
- add a hackbar panel to burp suite for manual request manipulation
- speed up manual web app penetration testing with ready-made payloads
- load a java burp extension jar for payload testing

## When to choose
- you already use burp suite and want a hackbar-style payload panel inside it
- you do manual web application security testing and need quick sqli/xss payload insertion
- you want a lightweight burp extension instead of a separate browser hackbar

## When to avoid
- you need automated vulnerability scanning rather than manual payload injection
- you do not use burp suite and want a standalone or browser-based hackbar
- you need encoder/decoder or waf bypass features that are listed as upcoming, not implemented

## Facets
- artifact type: plugin
- maturity: maintenance
- function: security, penetration-testing, developer-tools, plugin-system
- domain: security, penetration-testing, developer-tools, web-development
- platform: cross-platform, jvm
- tags: burpsuite, hackbar, burp-extension, payloads, sqli, xss, web-security-testing, manual-testing, desktop

## Member repositories
- d3vilbug/HackBar (main) score 23

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:05:14.193194+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-30T03:47:46.954402+00:00, confidence not recorded.
  - readme: https://github.com/d3vilbug/HackBar (fetched 2026-08-28T04:05:14.193194+00:00, sha 0543f85228e8)
- Data as of 2026-08-30T08:39:29.467469+00:00.
