
Sn1per
Automated penetration testing & attack surface management platform. Recon, scan, exploit, report — 600+ exploits, 90+ integrations, 10K+ detections.

Automated penetration testing & attack surface management platform. Recon, scan, exploit, report — 600+ exploits, 90+ integrations, 10K+ detections.

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Automated Security Testing For REST API's

Fast YAML-based vulnerability scanner with template-driven detection engine for automated security testing across web apps, APIs, networks, DNS, and…

Automated mobile application security testing framework for Android, iOS, and Windows. Performs static and dynamic analysis, malware detection, and…

Automated testing suite with live traffic record and replay

Vimana is a modular security framework for auditing Python APIs and Web applications. The plugin-based architecture enables security professionals to…

Automated API security testing tool that scans REST and SOAP APIs for vulnerabilities using OpenAPI/Swagger specs and WSDL files. Deploys a full …

Automated scanner that detects Unity runtime injection vulnerability CVE-2025-59489 in Android APKs by extracting Unity version and checking against…

Jenkins plugin for automated mobile app testing via Perfecto cloud, managing secure tunnel connections and app uploads within CI/CD pipelines.

A lightweight CLI tool for systematically detecting and exploiting race conditions in web applications, APIs, and modern services.

TLS checking component of purpleteam

Open Source Vulnerability Management Platform

Open-Source Unified Vulnerability Management, DevSecOps & ASPM

YAML-driven framework for testing Web Application Firewall (WAF) rules using OWASP Core Rule Set baselines. Automates regression detection and…

Faraday's Command Line Interface

Security tools report parsers for Faradaysec.com

CosmicSting (CVE-2024-34102) POC / Patch Validator