
apex
AI-powered offensive security testing using autonomous agents, directly in your terminal.

AI-powered offensive security testing using autonomous agents, directly in your terminal.

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Terminal API client for HTTP, GraphQL and gRPC. Plain .http files you can diff and version, with workflows, mocks, profiling, tracing, OpenAPI…

The independent security agent for AI-written software. Finds issues, investigates whether they are real, and shows you the evidence. Deterministic…

Hunt every Endpoint in your code, expose Shadow APIs, map the Attack Surface.

Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

Open-source API security platform for continuous API discovery, vulnerability testing, and runtime threat detection. Integrates with CI/CD pipelines…

Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

Open-source and AI-powered cybersecurity tools for offensive security, vulnerability management, and autonomous pentesting. Built by hackers in Latin…

Lightweight file-based CLI API client with age-encrypted secrets, first-class GraphQL support and MCP server for agentic workflow.

Security tools report parsers for Faradaysec.com

Complete Solution for VAPT/AppSec and Pentesting Guide: Web | Mobile | API | Thick Client | Source Code Review | DevSecOps | Wireless | Network…

Unified security scanner for MCP servers with config, pentest, and repo-scan modes. Generates SARIF reports for CI/CD integration, detects secrets,…

Open-Source Unified Vulnerability Management, DevSecOps & ASPM

Reconmap is a collaboration-first security operations platform for infosec teams and MSSPs, enabling end‑to‑end engagement management, from…

Rust-powered HTTP Request Smuggling Scanner.

An open, local-first security testing platform for pentesters, AI agents, CI/CD pipelines, and teams.