
skipfish
Web application security scanner created by lcamtuf for google - Unofficial Mirror

Web application security scanner created by lcamtuf for google - Unofficial Mirror

rep+ — Burp-style HTTP Repeater for Chrome DevTools with built‑in AI to explain requests and suggest attacks

Panoptic is an open source penetration testing tool that automates the process of search and retrieval of content for common log and config files…

vAPI is Vulnerable Adversely Programmed Interface which is Self-Hostable API that mimics OWASP API Top 10 scenarios through Exercises.

A Penetration Testing Framework, Information gathering tool & Website Vulnerability Scanner

Metlo is an open-source API security platform.

Set of tools to audit SIP based VoIP Systems

A fast tool to scan CRLF vulnerability written in Go

A security scanner for your LLM agentic workflows

Automated API security testing tool that generates tests from OpenAPI specs, fuzzes inputs, and checks for OWASP API Top 10 vulnerabilities including…

DR.CHECKER : A Soundy Vulnerability Detection Tool for Linux Kernel Drivers

CLI tool that audits OpenAPI specifications, validates them against best practices, and runs automated security tests to detect vulnerabilities and…

Offensive Docker is an image with the more used offensive tools to create an environment easily and quickly to launch assessment to the targets.

TheftFuzzer is a tool that fuzzes Cross-Origin Resource Sharing implementations for common misconfigurations.

Imperva's customizable API attack tool takes an API specification as an input, generates and runs attacks that are based on it as an output.

PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Platform

Automated DLL Hijacking Discovery, Validation, and Confirmation. Turning local misconfigurations into weaponized, confirmed attack paths.

Web Application Security Automation Framework which recons the target for various assets to maximize the attack surface for security professionals &…