
zaproxy
Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Lightweight service virtualization/ API simulation / API mocking tool for developers and testers

Collaborative application security testing between humans and agents via CLI and MCP


Wireshark for MCP. A transparent proxy that shows every real tool call between your AI client and your MCP servers, live in your terminal.

An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

Hermes Proxy - HTTP Traffic Analyzer

Open-source MITM proxy to intercept, inspect, and mock network traffic.

An HTTP client specifically developed for security researchers

REST API automation for Burp Suite Community Edition. Drop-in Java extension exposing send/repeat/history endpoints over a local HTTP API.

A Burp Suite extension that brings full DOM rendering capabilities directly into Burp, enabling effective security testing of modern JavaScript-heavy…

A proxy for net.tcp-based WCF traffic.

Zap Extension for collaboration in Faraday

Burp Extension for collaboration in Faraday

A headless , scriptable, command-line based MITM proxy designed for network traffic interception, analysis, and modification on Windows systems.

HTTP Proxy Analysis for reverse engineering protocol communication

Use Cloudflare to create HTTP pass-through proxies for unique IP rotation, similar to fireprox