
feroxfuzz
Build structure-aware black-box HTTP fuzzers in Rust with composable mutators, schedulers, observers, deciders, and processors for custom web and API…

Build structure-aware black-box HTTP fuzzers in Rust with composable mutators, schedulers, observers, deciders, and processors for custom web and API…

Automated HTTP Request Repeating With Burp Suite

A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC

A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.

Alexa skill example for Faraday API

PHP-RBAC is an authorization library for PHP. It provides developers with NIST Level 2 Standard Role Based Access Control and more, in the fastest…

The WASM Based Security Toolkit for the Web First Paradigm

pysap is an open source Python library that provides modules for crafting and sending packets using SAP's NI, Diag, Enqueue, Router, MS, SNC, IGS,…

REST API automation for Burp Suite Community Edition. Drop-in Java extension exposing send/repeat/history endpoints over a local HTTP API.

Terminal API client for HTTP, GraphQL and gRPC. Plain .http files you can diff and version, with workflows, mocks, profiling, tracing, OpenAPI…

Node.js SDK for capturing and replaying API calls made to/from your service

HTTP Proxy Analysis for reverse engineering protocol communication

Automated testing suite with live traffic record and replay

Collaborative application security testing between humans and agents via CLI and MCP

A Multi-Processing Tool for collecting and extracting information to an Excel file from a Burp Suite output file.

Burp Suite plugin for generating and executing Nuclei vulnerability templates directly from HTTP requests and responses, with YAML auto-complete and…