
cats
Automated REST API fuzzer and negative testing tool for OpenAPI endpoints. Generates, runs, and reports thousands of self-healing tests with no…

Automated REST API fuzzer and negative testing tool for OpenAPI endpoints. Generates, runs, and reports thousands of self-healing tests with no…

Automated WAF security testing tool that detects false positives and false negatives using 15+ payload categories including SQLi, XSS, RCE, and…

Terminal API client for HTTP, GraphQL and gRPC. Plain .http files you can diff and version, with workflows, mocks, profiling, tracing, OpenAPI…

Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Application…

A fast WordPress plugin enumeration tool

A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.

Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease application…

Automated HTTP Request Repeating With Burp Suite

A wordlist of API names for web application assessments

The AI toolkit for building reliable browser automations

AuthMatrix is a Burp Suite extension that provides a simple way to test authorization in web applications and web services.

Tests your WAF with +160 payloads

Rust components for traffic interception and redirection, enabling WireGuard device proxying and local app redirection across macOS, Windows, and…

PyJFuzz - Python JSON Fuzzer

Use Cloudflare to create HTTP pass-through proxies for unique IP rotation, similar to fireprox

SSRF plugin for burp Automates SSRF Detection in all of the Request


Burp Extension for testing authorization issues. Automated request repeating and parameter value extraction on the fly.