
cowitness
CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to mimic an…

CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to mimic an…

Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities…

Automate common Chrome Debug Protocol tasks to help debug web applications from the command-line and actively monitor and intercept HTTP requests and…

Scripts to clone CA certificates for use in HTTPS client attacks.

Burp extension to filter JSON on the fly with JQ queries in the HTTP message viewer.

This Burp Suite extension allows you to customize header with put a new header into HTTP REQUEST BurpSuite (Scanner, Intruder, Repeater, Proxy…

A tool to migrate Burpsuite HTTP history to Caido

BurpFlow is one of the best Burp Suite automation tools for bug bounty hunters and penetration testers, widely used to load recon data via proxy and…

Import To Sitemap is a Burp Suite Extension to import wstalker CSV file or ZAP export file into Burp Sitemap

From Proxy to SqlMapApi

IFRIT is an AI-powered reverse proxy that intercepts incoming requests in real time, classifying each one as legitimate or malicious. Legitimate…

REST/JSON API to the Burp Suite security tool.

Multi-language web CGI interfaces exploits.

The ZAP Heads Up Display (HUD)

Ruby In The Middle (HTTP/HTTPS interception proxy)

Automated SSL pinning bypass for any Flutter & Shorebird version — PyGhidra static analysis auto-discovers BoringSSL and generates ready-to-run Frida…

The world's fastest agentic crawler. Reclaimed. Reinvented. Ready for war.

DEPRECATED, wifipumpkin3 -> https://github.com/P0cL4bs/wifipumpkin3