
GraphQLmap
Security module for php7 and php8 - Killing bugclasses and virtual-patching the rest!

Security module for php7 and php8 - Killing bugclasses and virtual-patching the rest!

Burp Suite plugin for generating and executing Nuclei vulnerability templates directly from HTTP requests and responses, with YAML auto-complete and…

Automated REST API fuzzer and negative testing tool for OpenAPI endpoints. Generates, runs, and reports thousands of self-healing tests with no…

Automated WAF security testing tool that detects false positives and false negatives using 15+ payload categories including SQLi, XSS, RCE, and…

Terminal API client for HTTP, GraphQL and gRPC. Plain .http files you can diff and version, with workflows, mocks, profiling, tracing, OpenAPI…

A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.

Automated HTTP Request Repeating With Burp Suite

A wordlist of API names for web application assessments

Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease application…

AuthMatrix is a Burp Suite extension that provides a simple way to test authorization in web applications and web services.

A fast WordPress plugin enumeration tool

PyJFuzz - Python JSON Fuzzer

The AI toolkit for building reliable browser automations

Use Cloudflare to create HTTP pass-through proxies for unique IP rotation, similar to fireprox

Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Application…

Tests your WAF with +160 payloads

Open-source MITM proxy to intercept, inspect, and mock network traffic.
