
API-SPY-API-PROBE
A powerful directory brute-force tool that's tailored for recursive/multiplex operations, API discovery and enumeration, JS file scraping, and lists…

A powerful directory brute-force tool that's tailored for recursive/multiplex operations, API discovery and enumeration, JS file scraping, and lists…

A lightweight CLI tool for systematically detecting and exploiting race conditions in web applications, APIs, and modern services.

A Multi-Processing Tool for collecting and extracting information to an Excel file from a Burp Suite output file.

A lightweight Python-based security assessment tool for detecting dangerous Cross-Origin Resource Sharing (CORS) misconfigurations - CVE-2025-34291.

☸The first ever dependency-aware GraphQL API testing tool!

HTTP Toolkit is a beautiful & open-source tool for debugging, testing and building with HTTP(S) on Windows, Linux & Mac 🎉 Open an issue here to…

Comprehensive vulnerability detection tool for n8n workflow automation instances. Detects the critical CVE-2026-21858 vulnerability (CVSS 10.0)…

REST/JSON API to the Burp Suite security tool.

An on-path blackbox network traffic security testing tool

Python API security testing tool from OpenStack Security Group

:snake: A toolkit for testing, tweaking and cracking JSON Web Tokens

Android Package Inspector - dynamic analysis with api hooks, start unexported activities and more. (Xposed Module)

InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable scans, and…

Metlo is an open-source API security platform.

An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses

Rust-powered HTTP Request Smuggling Scanner.

Hidden parameters discovery suite

Multi-threaded scanner for detecting exposed Swagger/OpenAPI endpoints across web domains and subdomains, with automatic XSS detection, PoC…