
LLMMap
Automated prompt injection testing framework for LLM-integrated applications with dual-LLM architecture.

Automated prompt injection testing framework for LLM-integrated applications with dual-LLM architecture.

Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities…

Collaborative application security testing between humans and agents via CLI and MCP

adaptive agents for dynamic web penetration testing

A Burp Suite extension that brings full DOM rendering capabilities directly into Burp, enabling effective security testing of modern JavaScript-heavy…

CVE-2026-2587 PoC validator for Eclipse GlassFish EL Injection RCE in the admin console gadget.jsf handler. Safe authenticated vulnerability scanner…

Unified security scanner for MCP servers with config, pentest, and repo-scan modes. Generates SARIF reports for CI/CD integration, detects secrets,…

An analysis of CVE-2025-55182 and CVE-2025-66478 -- the vulnerabilities behind React2Shell. Tools, technical information, etc

Security Governance for Agentic AI

Web application security scanner created by lcamtuf for google - Unofficial Mirror

Vigolium - High-fidelity vulnerability scanner fusing agentic AI with native speed, modularity, and precision

Model Context Protocol server for Firefox DevTools - enables AI assistants to inspect and control Firefox browser through the Remote Debugging…

AI-powered vulnerability scanner extension for Burp Suite with multi-provider support (Ollama, OpenAI, Claude, Gemini)


Android deeplink misconfiguration detector and exploitation tool

A Burp Extender plugin, that will take deserialized AMF objects and encode them in XML using the Xtream library

Async API security scanner in Rust for CORS, CSP, GraphQL, JWT, OpenAPI, and active API posture checks.
