
GraphQLer
☸The first ever dependency-aware GraphQL API testing tool!

☸The first ever dependency-aware GraphQL API testing tool!
REST/JSON API to the Burp Suite security tool.

An on-path blackbox network traffic security testing tool

Python API security testing tool from OpenStack Security Group

Android Package Inspector - dynamic analysis with api hooks, start unexported activities and more. (Xposed Module)

An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses

InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable scans, and…

Metlo is an open-source API security platform.

Multi-threaded scanner for detecting exposed Swagger/OpenAPI endpoints across web domains and subdomains, with automatic XSS detection, PoC…

Academic purposes only. Attack against Salesforce lightning with guest privilege.

Rust-powered HTTP Request Smuggling Scanner.

Hidden parameters discovery suite

Automated CORS misconfiguration scanner that tests Origin header injection, wildcard reflection, and credential leakage across web applications and…


MAPS cloud scanner and response parser for Microsoft Defender research.

HTTP Proxy Analysis for reverse engineering protocol communication

CyberArk Security Audit

An API hooking framework for intercepting and monitoring Windows applications