
iron-proxy
An egress firewall for untrusted workloads.

An egress firewall for untrusted workloads.

A compact guide to network pivoting for penetration testings / CTF challenges.

The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 solely and…


A next-generation HTTP stealth proxy which perfectly cloaks requests as the Chrome browser across all layers of the stack.

MITM proxy for TCP/TLS/DTLS/UDP traffic, with STARTTLS, IoT, Thick Client and more.

evilwaf is a penetration testing tool designed to detect and bypass common Web Application Firewalls (WAFs).

Import To Sitemap is a Burp Suite Extension to import wstalker CSV file or ZAP export file into Burp Sitemap

A Burp Suite extension implementing the Signing HTTP Messages draft-ietf-httpbis-message-signatures-01 draft.

Solitude is a privacy analysis tool that enables anyone to conduct their own privacy investigations. Whether a curious novice or a more advanced…

A Burp Extender plugin, that will make binary soap objects readable and modifiable.

A headless , scriptable, command-line based MITM proxy designed for network traffic interception, analysis, and modification on Windows systems.

From Proxy to SqlMapApi

BurpFlow is one of the best Burp Suite automation tools for bug bounty hunters and penetration testers, widely used to load recon data via proxy and…


Burp Extension for collaboration in Faraday