
toxiproxy
⏰ 🔥 A TCP proxy to simulate network and system conditions for chaos and resiliency testing

⏰ 🔥 A TCP proxy to simulate network and system conditions for chaos and resiliency testing

Windows Remote Administration Tool via Telegram

Datajack Proxy allows you to intercept TLS traffic in native x86 applications across platforms

OAuth Request Crafter

Extension adds a new tab in Burp Suite called Extractor

Hackable HTTP proxy for resiliency testing and simulated network conditions

Just-in-time API keys for AI agents - and any other process you route through it: the caller only ever sees a placeholder.

REST API automation for Burp Suite Community Edition. Drop-in Java extension exposing send/repeat/history endpoints over a local HTTP API.

Interactive web server for inspecting HTTP requests and forging responses, with a terminal UI for real-time debugging and API testing.

Rust client library for the OWASP ZAP API, enabling programmatic access to web application security scanning, vulnerability detection, and proxy…

Extension for Burp Suite which uses AWS API Gateway to rotate your IP on every request.

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

A Python library to utilize AWS API Gateway's large IP pool as a proxy to generate pseudo-infinite IPs for web scraping and brute forcing.

OPNsense GUI, API and systems backend

An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

Python-based interactive packet manipulation library for forging, decoding, sending, capturing, and analyzing network packets across a wide range of…

Fast, multi-probe HTTP toolkit for reconnaissance and information gathering. Probes TLS, CSP, headers, tech stack, and CDN. Supports matchers,…

ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. It has a robust event-based…