
socksmon
Monitor arbitrary TCP traffic using your HTTP interception proxy of choice

Monitor arbitrary TCP traffic using your HTTP interception proxy of choice

Ratched is a transparent Man-in-the-Middle TLS proxy intended for penetration testing

A collaborative web exploitation framework.

REST/JSON API to the Burp Suite security tool.

A Domain-Fronting Relay that routes traffic though GAS (Google Apps Script) and forwards it to Cloudflare Workers. Designed to bypass DPI.

Tunna is a set of tools which will wrap and tunnel any TCP communication over HTTP. It can be used to bypass network restrictions in fully firewalled…

A Python library to utilize AWS API Gateway's large IP pool as a proxy to generate pseudo-infinite IPs for web scraping and brute forcing.

Transparent proxy that decrypts SSL traffic and prints out IRC messages.

Burp Suite extension for spoofing IP addresses in HTTP requests, enabling testing of server-side IP restrictions and bypassing IP-based access…

Empire HTTP(S) C2 redirector setup script

A firewall reverse proxy for preventing Log4J (Log4Shell aka CVE-2021-44228) attacks.

Extension for Burp Suite which uses AWS API Gateway to rotate your IP on every request.

Convert Cobalt Strike profiles to modrewrite scripts

Quick python utility I wrote to turn HTTP requests from burp suite into Cobalt Strike Malleable C2 profiles

IPSpinner works as a local proxy that redirects requests through external services.


An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…