
purpleteam-s2-containers
Stage two containers

Stage two containers

Evidence first autonomous web security testing for controlled, authorized targets. With reproducible labs, audit trails, reports, and XBEN…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Full-stack platform for authorized web application security scanning with a detector-based engine, async Celery workers, and a React dashboard for…

Web application security scanner created by lcamtuf for google - Unofficial Mirror

WEB SERVICE SECURITY ASSESSMENT TOOL

Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities…

Web Application Security Scanner Framework

Runtime Mobile Security (RMS) 📱🔥 - is a powerful web interface that helps you to manipulate Android and iOS Apps at Runtime

Vimana is a modular security framework for auditing Python APIs and Web applications. The plugin-based architecture enables security professionals to…

Adaptive web scraping framework with anti-bot bypass, automatic element relocation, concurrent crawling, proxy rotation, and browser automation for…

Turn any web app into an API. Chrome extension captures browser traffic, auto-generates schemas, lets AI replay APIs directly. No official API needed.

JAW: A Graph-based Security Analysis Framework for Client-side JavaScript

The world's fastest agentic crawler. Reclaimed. Reinvented. Ready for war.

Burp Suite's extension to scan and crawl Single Page Applications

Real-time web application weakness monitoring SDK and scanner. Detects XSS, SQL injection, sensitive payloads, and code vulnerabilities via dynamic…

Evidence-oriented DAST scanner in Go that crawls web apps and APIs, then runs adaptive SQLi, XSS, RCE, SSRF, and auth checks with replayable proof.

A collection of android security related resources