
cats
Automated REST API fuzzer and negative testing tool for OpenAPI endpoints. Generates, runs, and reports thousands of self-healing tests with no…

Automated REST API fuzzer and negative testing tool for OpenAPI endpoints. Generates, runs, and reports thousands of self-healing tests with no…

High-performance black-box fuzzer for web applications with built-in payload engine, request verification, tampering, encoding, and advanced…

Multi-threaded web fuzzer for URL path, HTTP header, and POST data brute-forcing with proxy support, status code filtering, and reflexive content…

All-in-one penetration testing platform with MITM proxy, web fuzzer, reverse connection handler, and plugin system for automated security testing and…

Packer Fuzzer is a fast and efficient scanner for security detection of websites constructed by javascript module bundler such as Webpack.

A fuzzer for detecting open redirect vulnerabilities

Domain-aware URL fuzzer that dynamically generates wordlists to discover exposed backup and sensitive files on web servers.

Advanced Time-based Blind SQL Injection fuzzer for HTTP Headers

User-Agent , X-Forwarded-For and Referer SQLI Fuzzer

Powerful mutable web directory fuzzer to bruteforce existing and/or hidden files or directories.

Cake Fuzzer is a project that is meant to help automatically and continuously discover vulnerabilities in web applications created based on specific…

CRLF and open redirect fuzzer


Security Tool for Reconnaissance and Information Gathering on a website. (python 3.x)

Automated reconnaissance framework with 17+ modules for subdomain enumeration, directory brute-forcing, JS/link mining, WAF fingerprinting, and…

Weaponizing WaybackUrls for Recon, BugBounties , OSINT, Sensitive Endpoints and what not

A fast tool to scan client-side prototype pollution vulnerability written in Rust. 🦀

Software for fuzzing, used on web application pentestings.