Firefox 브라우저 부가 기능
로그인
SQLiBar 미리보기

SQLiBar 제작자: bLackn3x

SQLiBar – Pentesting & SQLi Toolkit A Developer Tools extension for security testing, real-time SQL injection pattern detection, request manipulation, parameter discovery, and payload encoding.

5 (리뷰 1개)5 (리뷰 1개)
Firefox를 다운로드하고 확장 기능을 받으세요
파일 다운로드

확장 메타 데이터

스크린샷
정보
SQLiBar – Pentesting & SQLi Toolkit
A Developer Tools extension for security testing, real-time SQL injection pattern detection, request manipulation, parameter discovery, advanced payload encoding, and multi-language UI support.
Description
SQLiBar is an advanced web penetration testing tool built into Firefox Developer Tools. Designed for security researchers, penetration testers, and web developers, it streamlines parameter analysis, HTTP request building, SQL injection vulnerability testing, and response inspection directly from your browser.
SQL Injection Detection & Pattern Analysis

Automated response analysis against 100+ database-specific error patterns (MySQL, MariaDB, PostgreSQL, MSSQL, Oracle, SQLite, DB2, Sybase, Access, H2, Firebird, and common ORMs such as PDO, SQLAlchemy, Django, Laravel, Hibernate, Entity Framework, Prisma, and more)
Baseline comparison: set response length and timing baselines to catch subtle anomalies (Boolean-based, Union-based, Error-based, and Time-based indicators)
Reflection detection: highlights payload fragments that appear in the response
Diff view: line-based comparison against the stored baseline body
Visual severity indicators (high / medium / low) with code snippet context for identified error signatures

Smart Page Parameter Scanner

Scans the current page DOM to discover form fields, hidden inputs, URL query parameters, link parameters, data-* attributes, and cookies
Instantly push discovered parameters to the URL query, request body, or payload field with a single click

Live Network Capture & Parameter Aggregator

Real-time monitoring and capturing of HTTP / XHR / Fetch requests
Automatic extraction and aggregation of parameters from headers, query strings, URL-encoded bodies, and nested JSON payloads
Inspect raw request/response headers, bodies, and response previews directly
Filter by All / XHR / Documents / POST and search by URL or method
One-click send to Tester, Replay, cURL export, and parameter copy

Payload Presets & Request Manipulation

Built-in payload preset manager with dynamic column generator for UNION-based SQLi tests
Interactive JSON body tree examiner for navigating and selecting deeply nested keys
Custom HTTP header injector (X-Forwarded-For, Authorization, custom cookies, Host rewrite, and more)
Method selection (GET, POST, PUT, PATCH, DELETE, HEAD, OPTIONS), body editor, and optional page navigation
One-click cURL export of the current request

Response Viewer

Syntax highlighting for JSON and HTML response bodies
Search within the response (case-sensitive option, next/previous match)
Copy full response or body only

Multi-Format Encoder / Decoder

Live preview – encode/decode updates as you type
2-step chain – optional second encoding stage (e.g. URL → Base64 in one step)
Swap Input ↔ Output for rapid multi-pass encoding
Push results directly into Payload, URL, or Request Body
Formats include:
URL, Double URL, Triple URL, Selective URL (SQLi-focused)
Base64, Base64 URL-Safe
Hex (spaced / 0xAABB… / \x.. / 0xAA,0xBB), Binary, ASCII/Decimal
SQL CHAR(), SQL CHAR(0x…), SQL CONCAT(CHAR…)
Unicode \u, Unicode %u, Fullwidth Unicode
HTML Entities, JSON, JWT Decode (header / payload / signature), ROT13

Themes & Localization

Multiple built-in color schemes (Neon Green, Cyber Cyan, Violet, Amber, Hot Pink, Electric Blue, Matrix Lime, Mono) plus custom accent color picker
Multi-language interface: English, Deutsch, Español, Français, Português, Русский, 日本語, 中文 (preference saved)

Permissions Justification

devtools: Integrates natively into Firefox DevTools for a seamless workflow
webRequest / cookies / activeTab: Required to capture live network traffic, inspect response headers, inject payload parameters, and manage cookies for security testing

GitHub: https://github.com/blackn3x/SQLIBar
DisclaimerSQLiBar is strictly intended for authorized security testing, educational purposes, and vulnerability research on systems you own or have explicit permission to test.
리뷰어 1명이 5점으로 평가함
로그인하여 이 확장 기능의 평점을 남겨주세요
아직 평점이 없습니다

별점 저장됨

5
1
4
0
3
0
2
0
1
0
리뷰 1개 모두 읽기
권한 및 데이터

필수 권한:

  • 열려있는 탭의 데이터에 접근하도록 개발자 도구 확장
  • 브라우저 탭에 접근
  • 모든 웹사이트에서 사용자의 데이터에 접근

선택적 권한:

  • 모든 웹사이트에서 사용자의 데이터에 접근

데이터 수집:

  • 개발자는 이 확장 기능이 데이터 수집을 요구하지 않는다고 밝히고 있습니다.
더 알아보기
추가 정보
부가 기능 링크
  • 부가 기능 ID 복사
버전
1.0.9
크기
180.07 KB
최근 업데이트
3일 전 (2026년 8월 20일)
관련 카테고리
  • 웹 개발 도구
라이선스
MIT 라이선스
버전 목록
  • 모든 버전 보기
모음집에 추가
이 부가 기능 신고
Mozilla 홈페이지로 이동

부가 기능

  • 소개
  • Firefox 부가 기능 블로그
  • 확장 기능 워크샵
  • 개발자 허브
  • 개발자 정책
  • 커뮤니티 블로그
  • 포럼
  • 버그 신고
  • 리뷰 지침

다운로드

  • Download Firefox
  • Windows
  • macOS
  • iOS
  • Android
  • Linux
  • All

최신 빌드

  • Nightly
  • Beta

기업용 Firefox

  • Enterprise

커뮤니티

  • Connect
  • Contribute
  • Developer

팔로우

  • Instagram
  • YouTube
  • TikTok
  • Bluesky
  • Podcast
  • 개인 정보
  • 쿠키
  • 법률

특별한 고지가 없는 한, 본 사이트의 콘텐츠는 Commons Attribution Share-Alike License v3.0 또는 그 이후 버전에 따라 사용이 허가됩니다.