
proxmark3
Hardware tool for RFID analysis, emulation, and penetration testing. Supports 125kHz, 13.56MHz protocols (MIFARE, iClass, ISO14443/15693) with key…

Hardware tool for RFID analysis, emulation, and penetration testing. Supports 125kHz, 13.56MHz protocols (MIFARE, iClass, ISO14443/15693) with key…

Rust crypto w/ zero default deps: BLAKE3, Ed25519/X25519, hashes, MACs, KDFs, AEADs, and checksums w/ full SIMD/ASM acceleration

Automated REST API fuzzer and negative testing tool for OpenAPI endpoints. Generates, runs, and reports thousands of self-healing tests with no…

A fast tool to scan CRLF vulnerability written in Go

Automatic SSTI detection tool with interactive interface

Pishi is a code coverage tool like kcov for macOS.

Automated API security testing tool that generates tests from OpenAPI specs, fuzzes inputs, and checks for OWASP API Top 10 vulnerabilities including…

Burp Suite extension for API security testing with 15 attack types, 108+ payloads, intelligent fuzzing, BOLA/IDOR detection, AI integration, and…

SIP Security Assessment Framework for VoIP Pentesters. Presented at DEFCON, BlackHat & Offzone.

No-dongle, no-root Bluetooth security assessment tool for wireless earbuds affected by the Airoha SDK vulnerability chain (CVE-2025-20700/20701/20702)

A tool to generate and maintain wordlists for Web fuzzing.

PulseAPK Core: Cross-Platform tool for working with APK files: Decompilation, Analysis, Building

Security Tool for Reconnaissance and Information Gathering on a website. (python 3.x)

A powerful static binary rewriting tool

Symbolic execution tool

A tool that is used to hunt vulnerabilities in x64 WDM drivers

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.