
Burp_Collector
A Multi-Processing Tool for collecting and extracting information to an Excel file from a Burp Suite output file.

A Multi-Processing Tool for collecting and extracting information to an Excel file from a Burp Suite output file.

A fast, keyboard-driven HTTP intercepting proxy and hacking & pentesting toolkit for the terminal.

pysap is an open source Python library that provides modules for crafting and sending packets using SAP's NI, Diag, Enqueue, Router, MS, SNC, IGS,…

Terminal-based HTTP intercepting proxy with TUI for capturing, inspecting, and modifying requests in real time, plus a Repeater for resending and…

Centralized YAML-based knowledge base linking MITRE CWE, OWASP Top10, ASVS, and other security standards with versioned references. Includes MkDocs…

SDK for querying the Intelligence X search engine and data archive, supporting selectors like email, domain, IP, and phone. Includes API wrappers in…

Native HTTP/HTTPS interception proxy for penetration testers and bug bounty hunters with live request tampering, request replay, high-speed fuzzing,…

CLI for generating, analyzing, merging, diffing, validating, signing, and converting CycloneDX SBOMs across JSON, XML, Protobuf, CSV, and SPDX…

Alexa skill example for Faraday API

Burp Suite plugin for generating and executing Nuclei vulnerability templates directly from HTTP requests and responses, with YAML auto-complete and…

Terminal API client for HTTP, GraphQL and gRPC. Plain .http files you can diff and version, with workflows, mocks, profiling, tracing, OpenAPI…

Node.js SDK for capturing and replaying API calls made to/from your service

Automated testing suite with live traffic record and replay

OWASP Passfault evaluates passwords and enforces password policy in a completely different way.

REST API automation for Burp Suite Community Edition. Drop-in Java extension exposing send/repeat/history endpoints over a local HTTP API.

Build structure-aware black-box HTTP fuzzers in Rust with composable mutators, schedulers, observers, deciders, and processors for custom web and API…

A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC

Automated HTTP Request Repeating With Burp Suite