#1Tools for intercepting, analyzing, and modifying web traffic for security testing.
Kitploit recommended

Extension for Burp Suite which uses AWS API Gateway to rotate your IP on every request.

Burp Suite extension for spoofing IP addresses in HTTP requests, enabling testing of server-side IP restrictions and bypassing IP-based access…

Python Exploitation Framework, V8 Engine Debugger, Proxy interceptor, marketplace, post-exploitation, backdoor generator,....

High-performance secrets scanner. CLI, Go library, Burp Suite extension, and Chrome extension. 487 detection rules with live credential validation.

Automates phishing and post-phishing activities with an almost-transparent reverse proxy that dynamically mirrors target web apps and interacts with…

Bambdas collection for Burp Suite Professional and Community.

An egress firewall for untrusted workloads.

Firefox/Burp extension for security audits with single-click proxy, container profiles, postMessage logging, JS injection toolbox, and security…

Patch Binaries via MITM: BackdoorFactory + mitmProxy.

Rust components for traffic interception and redirection, enabling WireGuard device proxying and local app redirection across macOS, Windows, and…

The ZAP Heads Up Display (HUD)

HTTP/HTTPS proxy in a single python script

Use Cloudflare to create HTTP pass-through proxies for unique IP rotation, similar to fireprox

Convert Cobalt Strike profiles to modrewrite scripts

Blackbox Protobuf is a set of tools for working with encoded Protocol Buffers (protobuf) without the matching protobuf definition.

A library for integrating communication channels with the Cobalt Strike External C2 server

Burp Plugin to decrypt AES encrypted traffic on the fly

Next Generation SSLKillSwitch with much more support!