#1Tools for intercepting, analyzing, and modifying web traffic for security testing.
Kitploit recommended

Burp extension to filter JSON on the fly with JQ queries in the HTTP message viewer.

Multi-language web CGI interfaces exploits.

IPSpinner works as a local proxy that redirects requests through external services.

From Proxy to SqlMapApi

HTTP proxy bridge for security testing of remote MCP servers, allowing standard HTTP tools to send JSON-RPC messages and manage sessions.

BurpFlow is one of the best Burp Suite automation tools for bug bounty hunters and penetration testers, widely used to load recon data via proxy and…

HopLa Burp Suite Extender plugin - Brings AI capabilities, autocompletion support, and a set of useful payloads to Burp Suite

Selfhosted alternative to 12ft.io. and 1ft.io. Proxy to remove CORS headers and modify HTML

HTTP/HTTPS interception proxy for testing Windows authentication mechanisms, supporting NTLM, Kerberos, pass-the-hash, pass-the-ticket and relay…

bbs is a router for SOCKS and HTTP proxies. It exposes a SOCKS5 (or HTTP CONNECT) service and forwards incoming requests to proxies or chains of…

Comprehensive web application security testing platform featuring advanced scanning engine, intercepting proxy, and automated vulnerability detection…

Match & Replace rules for Portswigger's Burp that operate globally across all utilities.

Transparent proxy that decrypts SSL traffic and prints out IRC messages.

This project is now part of @mitmproxy.

A browser extension for faradaysec platform https://faradaysec.com

Burp Extension for collaboration in Faraday

Zap Extension for collaboration in Faraday

Bambdas collection for Burp Suite Professional and Community.