HackBar chrome extension

Version: 1.0.3
HackBar
A browser extension for Penetration Testing
4.14 Based on 44 user rates

What is HackBar?

HackBar is a github extension for chrome. it's a free extension , it has 50,000+ active users since released its first version, it earns an average rating of 4.14 from 44 rated user, last update is 486 days ago.


What’s new in version 1.0.3?

                ## Contributor

- 0140454
  - GitHub: https://github.com/0140454
- lebr0nli
  - GitHub: https://github.com/lebr0nli
- boylin0
  - GitHub: https://github.com/boylin0

## How to open it?

1. Open "Developer tools" (Press F12 or Ctrl+Shift+I)
2. Switch to "HackBar" tab
3. Enjoy it

## Features

* Load
  * From tab (default)
  * From cURL command

* Supported
  * HTTP methods
    * GET
    * POST
      * application/x-www-form-urlencoded
      * multipart/form-data
      * application/json
  * Request editing mode
    * Basic
    * Raw
  * For more information, please visit https://github.com/0140454/hackbar/blob/master/README.md

* Auto Test
  * Common paths (Wordlist from dirsearch included)

* SQLi
  * Dump all database names (MySQL, PostgreSQL)
  * Dump tables from database (MySQL, PostgreSQL)
  * Dump columns from database (MySQL, PostgreSQL)
  * Union select statement (MySQL, PostgreSQL)
  * Error-based injection statement (MySQL, PostgreSQL)
  * Dump in one shot payload (MySQL)
    * Reference: https://github.com/swisskyrepo/PayloadsAllTheThings
  * Dump current query payload (MySQL)
    * Reference: https://github.com/swisskyrepo/PayloadsAllTheThings
  * Space to Inline comment

* XSS
  * Vue.js XSS payloads
  * Angular.js XSS payloads for strict CSP
  * Some snippets for CTF
  * Html encode/decode with hex/dec/entity name
  * String.fromCharCode encode/decode

* LFI
  * PHP wrapper - Base64

* SSRF
  * AWS - IAM role name

* SSTI
  * Jinja2 SSTI
    * Flask RCE Reference: https://twitter.com/realgam3/status/1184747565415358469
  * Java SSTI

* Shell
  * Python reverse shell cheatsheet
  * bash reverse shell cheatsheet
  * nc reverse shell cheatsheet
  * php reverse shell/web shell cheatsheet

* Encoding
  * URL encode/decode
  * Base64 encode/decode
  * Hexadecimal encode/decode
  * Unicode encode/decode
  * Escape ASCII to hex/oct format

* Hashing
  * MD5
  * SHA1
  * SHA256
  * SHA384
  * SHA512

## Shortcuts

* Load
  * Default: Alt + A

* Split
  * Default: Alt + S

* Execute
  * Default: Alt + X

* Switch request editing mode
  * Default: Alt + M

## Third-party Libraries

For more information, please visit https://github.com/0140454/hackbar#third-party-libraries            

How to install HackBar?

You could download the latest version crx file or older version files and install it.


Preview of HackBar


Technical Features:

  • Latest Version: 1.0.3
  • Requirements: Windows Chrome, Mac Chrome
  • License: Free
  • Latest update: Monday, December 26th, 2022
  • Author: 0140454

HackBar Available languages:

English.


FAQ

  • What about others talk about hackbar chrome extension?

    64% user give 5-star rating, 18% user give 3-star rating, 9% user give 2-star rating, 9% user give 1-star rating. Read reviews of hackbar

  • How could i get help if there is something wrong with hackbar chrome extension?

    You could find more help information from hackbar support page.

  • How could i contact the developer of hackbar chrome extension?

    You could send emails to publisher, or check publisher's website.

  • What are the required permissions for extensions?

    • storage
    • scripting
    • webRequest
    • declarativeNetRequest
    • *://*/*

    More about manifest_file of hackbar.

  • How could i report abuse of hackbar chrome extension?

    You could click to report abuse of hackbar.


Reviews of hackbar:


Ryan Dormanesh February 7th, 2023
Ryan Dormanesh

it was way to much add a tutorial


Adem Kouki September 25th, 2022
Adem Kouki

love it


Byond VR September 23rd, 2022
Byond VR

I don't know how to use it

Read more review & comments of hackbar