
Moxy
Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities…

Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities…

Comprehensive web application security testing platform featuring advanced scanning engine, intercepting proxy, and automated vulnerability detection…

A comprehensive web application security testing toolkit that combines 10 powerful penetration testing features into one tool.

The collaborative web app pentest suite

OWASP Web Security Testing Guide RAG system with ChromaDB, MCP for Claude Code

API Scraper Agent for Web API's

Advanced recon engine that finds real secrets, validates them live, and builds exploit paths from client-side intelligence.

Web app authorisation coverage scanning

A fast, simple, recursive content discovery tool written in Rust.

HTTP parameter discovery tool that finds valid query parameters for URL endpoints using a large dictionary, supporting GET/POST/JSON/XML requests,…

A fast WordPress plugin enumeration tool

The AI toolkit for building reliable browser automations

Tests your WAF with +160 payloads

Hidden parameters discovery suite

Automated WAF assessment tool that detects firewall vendors, tests 19 attack categories with advanced evasion payloads, and provides color-coded…

RESTful API wrapping Nmap for automated network scanning, port detection, service enumeration, and vulnerability analysis with optional AI-powered…

Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Automatic SQL injection and database takeover tool