
MCP-Inspector-CVE-2025-49596
MCP-Inspector-vulncheck is a Python script that checks if an MCP Inspector server is vulnerable to CVE-2025-49596. It tests whether the /sse endpoint…

MCP-Inspector-vulncheck is a Python script that checks if an MCP Inspector server is vulnerable to CVE-2025-49596. It tests whether the /sse endpoint…

SDK for querying the Intelligence X search engine and data archive, supporting selectors like email, domain, IP, and phone. Includes API wrappers in…

Hooker is an opensource project for dynamic analyses of Android applications. This project provides various tools and applications that can be use to…

Python API security testing tool from OpenStack Security Group

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

🥧 HTTPie CLI — modern, user-friendly command-line HTTP client for the API era. JSON support, colors, sessions, downloads, plugins & more.

Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

Automated Security Testing For REST API's

Web vulnerability scanner written in Python3

Open-source AI pentester that proves every finding. Machine oracles re-run each exploit; verified bugs ship a proof capsule you can replay yourself.

Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Application…

a Damn Vulnerable Serverless Application

Use Cloudflare to create HTTP pass-through proxies for unique IP rotation, similar to fireprox

GraphQL server engine fingerprinting tool that sends benign and malformed queries to identify backend technology and assess security defenses via the…

Opensource, cross-platform and portable toolkit for automating routine processes when carrying out various works for testing!

Automated CORS misconfiguration scanner that tests Origin header injection, wildcard reflection, and credential leakage across web applications and…

Validates Google Maps API keys against 21 endpoints, revealing exposed services with PoC URLs, proxy support, and quiet mode for focused auditing.

Executable security regression testing for agentic applications and MCP-integrated systems.