#1Tools for intercepting, analyzing, and modifying web traffic for security testing.
Kitploit recommended

Wireshark for MCP. A transparent proxy that shows every real tool call between your AI client and your MCP servers, live in your terminal.
A Python library to utilize AWS API Gateway's large IP pool as a proxy to generate pseudo-infinite IPs for web scraping and brute forcing.

All-in-one penetration testing platform with MITM proxy, web fuzzer, reverse connection handler, and plugin system for automated security testing and…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Fast, multi-probe HTTP toolkit for reconnaissance and information gathering. Probes TLS, CSP, headers, tech stack, and CDN. Supports matchers,…

Burp Suite JS Beautifier

Ruby In The Middle (HTTP/HTTPS interception proxy)

BinProxy is a proxy for arbitrary TCP connections. You can define custom message formats using the BinData gem.

Privacy aware web content sanitizer proxy as a service

Fast TCP/UDP tunnel over HTTP with SSH encryption, supporting reverse port forwarding, SOCKS5 proxy, and client authentication for secure network…

Interactive cli tool for HTTP inspection

Application for capturing, modifying and sending custom WebSocket data from client to server and vice versa.

Monitor arbitrary TCP traffic using your HTTP interception proxy of choice

An open-source, pentest and developer-oriented web browser, using the power of Lua

Protect your parents from phishing

Ratched is a transparent Man-in-the-Middle TLS proxy intended for penetration testing

HTTP/HTTPS MITM proxy and recorder.

Evilgrade is a modular framework that allows the user to take advantage of poor upgrade implementations by injecting fake updates.