
zaproxy
Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Successor of Undetected-Chromedriver. Providing a blazing fast framework for web automation, webscraping, bots and any other creative ideas which are…

Lightweight service virtualization/ API simulation / API mocking tool for developers and testers

Zap Extension for collaboration in Faraday

An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

⚔️ Web Hacker's Weapons / A collection of cool tools used by Web hackers. Happy hacking , Happy bug-hunting

Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2,…

Interactive web server for inspecting HTTP requests and forging responses, with a terminal UI for real-time debugging and API testing.

A versatile and portable proxy for capturing, manipulating, and replaying HTTP/HTTPS traffic on the go.

Hackable HTTP proxy for resiliency testing and simulated network conditions

Martian is a library for building custom HTTP/S proxies

HTTP/HTTPS MITM proxy and recorder.

rep+ — Burp-style HTTP Repeater for Chrome DevTools with built‑in AI to explain requests and suggest attacks

Evilgrade is a modular framework that allows the user to take advantage of poor upgrade implementations by injecting fake updates.

Tunna is a set of tools which will wrap and tunnel any TCP communication over HTTP. It can be used to bypass network restrictions in fully firewalled…

A next-generation HTTP stealth proxy which perfectly cloaks requests as the Chrome browser across all layers of the stack.