
WhatWeb
Next generation web scanner

Next generation web scanner

Automated Security Testing For REST API's

GCPGoat : A Damn Vulnerable GCP Infrastructure

AI-powered vulnerability scanner extension for Burp Suite with multi-provider support (Ollama, OpenAI, Claude, Gemini)

Local-first AI red team for web, API, and LLM application security. Attacker-style reasoning, evidence-backed findings, and skills for AI coding…

WEB SERVICE SECURITY ASSESSMENT TOOL

BoB Web Application Security Project

Agentic Pentesting MCP server that discovers, exploits, and reports web application vulnerabilities.

Performing automated scan using Burp Suite Pro & Vmware Burp Rest API

AI-powered SAST scanner that finds auth bypass, IDOR, and logic bugs Semgrep/CodeQL miss. Free GitHub Action. Supports Python, JS/TS, Go, PHP, Ruby.

RESTful API wrapping Nmap for automated network scanning, port detection, service enumeration, and vulnerability analysis with optional AI-powered…

Detection scanner for CVE-2026-48710 - Host-header auth bypass in Starlette/FastAPI

Application scanning component of purpleteam

Web vulnerability scanner written in Python3

Tests your WAF with +160 payloads


SQLiPy is a Python plugin for Burp Suite that integrates SQLMap using the SQLMap API.

Automated authorization security scanner for OpenAPI-based APIs. Tests GET endpoints with multiple credential sets to detect privilege escalation and…