0. GraphQL Resources

https://learn.microsoft.com/en-us/windows/win32/api/?source=recommendations

https://blog.postman.com/different-types-of-apis/

https://github.com/graphql-kit/graphql-apis?tab=readme-ov-file

Tools

https://github.com/nikitastupin/clairvoyance

Visualizer

http://nathanrandal.com/graphql-visualizer/

Other resources

https://graphql.org/learn/introspection/#gatsby-focus-wrapper
https://book.hacktricks.xyz/network-services-pentesting/pentesting-web/graphql
https://cheatsheetseries.owasp.org/cheatsheets/GraphQL_Cheat_Sheet.html
https://beaglesecurity.com/blog/article/graphql-attacks-vulnerabilities.html

Visualization Tool for Introspection

GraphQL Voyager
SpectaQL

BurpSuite InQL

Free extension- It is freaking amazing.

BurpSuite GraphQL Raider

Pro extension.

InQL


https://github.com/doyensec/inql

clairvoyance

https://github.com/nikitastupin/clairvoyance

graphw00f

https://github.com/dolevf/graphw00f

BatchQL

https://github.com/assetnote/batchql

Commix

https://github.com/commixproject/commix

Graphql-path-enum

https://gitlab.com/dee-see/graphql-path-enum

Eyewitness

sudo apt install eyewitness -y

GraphQL-COP

https://github.com/dolevf/graphql-cop

CrackQL

https://github.com/nicholasaleks/CrackQL