
zaproxy
Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Go-based Web Application Firewall library compatible with ModSecurity SecLang rules and OWASP Core Rule Set v4, providing real-time HTTP traffic…

Damn Vulnerable GraphQL Application is an intentionally vulnerable GraphQL service implementation designed for learning about and practising GraphQL…

Tests your WAF with +160 payloads

Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities…

A comprehensive web application security testing toolkit that combines 10 powerful penetration testing features into one tool.

Collaborative application security testing between humans and agents via CLI and MCP


Application scanning component of purpleteam

The vulnerability exists in the Student Payment API. The application fails to properly validate whether the user requesting a receipt is authorized…