Přidatki za Firefox Browser
Přizjewić
Přehlad SQLiBar

SQLiBar wot bLackn3x

SQLiBar – Pentesting & SQLi Toolkit A Developer Tools extension for security testing, real-time SQL injection pattern detection, request manipulation, parameter discovery, and payload encoding.

5 (1 pohódnoćenje)5 (1 pohódnoćenje)
Firefox sćahnyć a rozšěrjenje wobstarać
Dataju sćahnyć

Metadaty rozšěrjenja

Fota wobrazowki
Wo tutym rozšěrjenju
SQLiBar – Pentesting & SQLi Toolkit
A Developer Tools extension for security testing, real-time SQL injection pattern detection, request manipulation, parameter discovery, advanced payload encoding, and multi-language UI support.
Description
SQLiBar is an advanced web penetration testing tool built into Firefox Developer Tools. Designed for security researchers, penetration testers, and web developers, it streamlines parameter analysis, HTTP request building, SQL injection vulnerability testing, and response inspection directly from your browser.
SQL Injection Detection & Pattern Analysis

Automated response analysis against 100+ database-specific error patterns (MySQL, MariaDB, PostgreSQL, MSSQL, Oracle, SQLite, DB2, Sybase, Access, H2, Firebird, and common ORMs such as PDO, SQLAlchemy, Django, Laravel, Hibernate, Entity Framework, Prisma, and more)
Baseline comparison: set response length and timing baselines to catch subtle anomalies (Boolean-based, Union-based, Error-based, and Time-based indicators)
Reflection detection: highlights payload fragments that appear in the response
Diff view: line-based comparison against the stored baseline body
Visual severity indicators (high / medium / low) with code snippet context for identified error signatures

Smart Page Parameter Scanner

Scans the current page DOM to discover form fields, hidden inputs, URL query parameters, link parameters, data-* attributes, and cookies
Instantly push discovered parameters to the URL query, request body, or payload field with a single click

Live Network Capture & Parameter Aggregator

Real-time monitoring and capturing of HTTP / XHR / Fetch requests
Automatic extraction and aggregation of parameters from headers, query strings, URL-encoded bodies, and nested JSON payloads
Inspect raw request/response headers, bodies, and response previews directly
Filter by All / XHR / Documents / POST and search by URL or method
One-click send to Tester, Replay, cURL export, and parameter copy

Payload Presets & Request Manipulation

Built-in payload preset manager with dynamic column generator for UNION-based SQLi tests
Interactive JSON body tree examiner for navigating and selecting deeply nested keys
Custom HTTP header injector (X-Forwarded-For, Authorization, custom cookies, Host rewrite, and more)
Method selection (GET, POST, PUT, PATCH, DELETE, HEAD, OPTIONS), body editor, and optional page navigation
One-click cURL export of the current request

Response Viewer

Syntax highlighting for JSON and HTML response bodies
Search within the response (case-sensitive option, next/previous match)
Copy full response or body only

Multi-Format Encoder / Decoder

Live preview – encode/decode updates as you type
2-step chain – optional second encoding stage (e.g. URL → Base64 in one step)
Swap Input ↔ Output for rapid multi-pass encoding
Push results directly into Payload, URL, or Request Body
Formats include:
URL, Double URL, Triple URL, Selective URL (SQLi-focused)
Base64, Base64 URL-Safe
Hex (spaced / 0xAABB… / \x.. / 0xAA,0xBB), Binary, ASCII/Decimal
SQL CHAR(), SQL CHAR(0x…), SQL CONCAT(CHAR…)
Unicode \u, Unicode %u, Fullwidth Unicode
HTML Entities, JSON, JWT Decode (header / payload / signature), ROT13

Themes & Localization

Multiple built-in color schemes (Neon Green, Cyber Cyan, Violet, Amber, Hot Pink, Electric Blue, Matrix Lime, Mono) plus custom accent color picker
Multi-language interface: English, Deutsch, Español, Français, Português, Русский, 日本語, 中文 (preference saved)

Permissions Justification

devtools: Integrates natively into Firefox DevTools for a seamless workflow
webRequest / cookies / activeTab: Required to capture live network traffic, inspect response headers, inject payload parameters, and manage cookies for security testing

GitHub: https://github.com/blackn3x/SQLIBar
DisclaimerSQLiBar is strictly intended for authorized security testing, educational purposes, and vulnerability research on systems you own or have explicit permission to test.
Z 5 wot 1 pohódnoćaceho pohódnoćeny
Přizjewće so, zo byšće tute rozšěrjenje pohódnoćił
Hišće pohódnoćenja njejsu

Hwězdne pohódnoćenje je so składowało

5
1
4
0
3
0
2
0
1
0
1 pohódnoćenje čitać
Prawa a daty

Trěbne prawa:

  • Rozšěrće wuwiwarske nastroje, zo byšće přistup k swojim datam we wočinjenych rajtarkach měł
  • Mějće přistup k rajtarkam wobhladowaka
  • Přistup k wašim datam za wšě websydła měć

Opcionalne prawa:

  • Přistup k wašim datam za wšě websydła měć

Hromadźenje datow:

  • Wuwiwar praji, zo tute rozšěrjenje hromadźenje datow njetrjeba.
Dalše informacije
Dalše informacije
Přidatkowe wotkazy
  • ID přidatka kopěrować
Wersija
1.0.9
Wulkosć
180,07 KB
Posledni raz zaktualizowany
18 dagen lyn (20 aug. 2026)
Přiwuzne kategorije
  • Webwuwiwanje
Licenca
Licenca MIT
Wersijowa historija
  • Wšě wersije pokazać
Zběrce přidać
Tutón přidatk zdźělić
K startowej stronje Mozilla

Přidatki

  • Wo
  • Blog přidatkow Firefox
  • Dźěłarnička rozšěrjenjow
  • Wuwiwarski róžk
  • Wuwiwarske prawidła
  • Blog zhromadźenstwa
  • Forum
  • Programowy zmylk zdźělić
  • Směrnica za pohódnoćenja

Sćahnyć

  • Download Firefox
  • Windows
  • macOS
  • iOS
  • Android
  • Linux
  • All

Najnowše wersije

  • Nightly
  • Beta

Firefox za předewzaća

  • Enterprise

Zhromadźenstwo

  • Connect
  • Contribute
  • Developer

Slědować

  • Instagram
  • YouTube
  • TikTok
  • Bluesky
  • Podcast
  • Priwatnosć
  • Placki
  • Prawniske

Jeli nic hinak zapisane, so wobsah na tutym sydle pod Creative Commons Attribution Share-Alike License v3.0 abo poždźišej wersiju licencuje.