
MasterHttpRelayVPN
Domain-fronted HTTP/SOCKS5 proxy tunneling traffic through Google Apps Script with MITM TLS interception, HTTP/1-2 multiplexing, and DPI evasion.

Domain-fronted HTTP/SOCKS5 proxy tunneling traffic through Google Apps Script with MITM TLS interception, HTTP/1-2 multiplexing, and DPI evasion.

rep+ — Burp-style HTTP Repeater for Chrome DevTools with built‑in AI to explain requests and suggest attacks

CoWitness is a powerful web application testing tool that enhances the accuracy and efficiency of your testing efforts. It allows you to mimic an…

Moxy is an open-source DAST tool designed for modern web application security testing. It provides an easy-to-use interface with agentic capabilities…

一个轻量级浏览器抓包与安全分析扩展,在浏览器侧边栏中即可完成抓包、拦截、修改、重放、规则检测与AI辅助分析的完整工作流。(A lightweight browser extension for traffic capture and security analysis, enabling…

The collaborative web app pentest suite

An egress firewall for untrusted workloads.


Android Full-Stack Device Control Platform: WebRTC/H.264 remote desktop, UI/OCR/image-matching automation, one-click MITM, built-in Frida,…

Capture HTTP/HTTPS traffic from Android apps and send to Proxyman for debugging.

Intercept, modify, repeat and attack Android's Binder transactions using Burp Suite

The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

Protect your parents from phishing

Collaborative application security testing between humans and agents via CLI and MCP

:zap: Web Debugging Proxy based on Chrome DevTools Network panel.

Automate common Chrome Debug Protocol tasks to help debug web applications from the command-line and actively monitor and intercept HTTP requests and…

An interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers.