#1Tools for intercepting, analyzing, and modifying web traffic for security testing.
Kitploit recommended

MITM proxy for TCP/TLS/DTLS/UDP traffic, with STARTTLS, IoT, Thick Client and more.
evilwaf is a penetration testing tool designed to detect and bypass common Web Application Firewalls (WAFs).

Plugin For BurpSuite (Pentester)

This tool downloads, installs, and configures a shiny new copy of Chromium.

Automated HTTP Request Repeating With Burp Suite

Burp Suite extension to perform Kerberos authentication

Blackbox Protobuf is a set of tools for working with encoded Protocol Buffers (protobuf) without the matching protobuf definition.

Import To Sitemap is a Burp Suite Extension to import wstalker CSV file or ZAP export file into Burp Sitemap

Datajack Proxy allows you to intercept TLS traffic in native x86 applications across platforms

Improved decoder for Burp Suite

Extension adds a new tab in Burp Suite called Extractor

A Burp Suite extension implementing the Signing HTTP Messages draft-ietf-httpbis-message-signatures-01 draft.

Caches JWT authentication tokens from an auth URL and attaches them as headers to in-scope requests in Burp Suite for automated session handling.

Human-friendly Thrift encoder/decoder

Solitude is a privacy analysis tool that enables anyone to conduct their own privacy investigations. Whether a curious novice or a more advanced…

A Burp Extender plugin, that will make binary soap objects readable and modifiable.

Scripts to clone CA certificates for use in HTTPS client attacks.

A headless , scriptable, command-line based MITM proxy designed for network traffic interception, analysis, and modification on Windows systems.