
MobileApp-Pentest-Cheatsheet
The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

The Mobile App Pentest cheat sheet was created to provide concise collection of high value information on specific mobile application penetration…

An open-source, pentest and developer-oriented web browser, using the power of Lua

The collaborative web app pentest suite

Go-based MITM HTTP/HTTPS proxy for intercepting, inspecting, and replaying traffic. Features admin dashboard, AI copilot, threat scanning, caching,…

Authorized WAF bypass proxy that rotates TCP/TLS/HTTP2 fingerprints, hunts origin IPs behind firewalls, and scans WAF defenses across 10 layers for…

Modular framework for injecting fake software updates via DNS spoofing and MITM attacks. Includes built-in DNS and web servers, 60+ pre-configured…

Firefox/Burp extension for security audits with single-click proxy, container profiles, postMessage logging, JS injection toolbox, and security…

Go-based CLI client for BurpSuite REST API, enabling automated scanning, proxy control, and task management for penetration testing workflows.

Transparent Man-in-the-Middle TLS proxy for penetration testing. Intercepts TLS connections based on SNI, dumps traffic to PCAPNG, and supports…

REST API automation for Burp Suite Community Edition. Drop-in Java extension exposing send/repeat/history endpoints over a local HTTP API.

Man-in-the-middle SSH proxy for security audits and penetration testing. Intercepts SSH, SCP, and SFTP sessions with support for agent and port…

JavaScript-based BurpSuite plugin for web application pentesting, providing custom scanning, exploitation, and analysis modules.

All-in-one penetration testing platform with MITM proxy, web fuzzer, reverse connection handler, and plugin system for automated security testing and…