
smugglex
Rust-powered HTTP Request Smuggling Scanner.

Rust-powered HTTP Request Smuggling Scanner.

A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.

A rapid HTTP downgrade smuggling scanner written in Go.

Automated authorization security scanner for OpenAPI-based APIs. Tests GET endpoints with multiple credential sets to detect privilege escalation and…

⚡️ Multiple target ZAP Scanning

Hidden parameters discovery suite

Multi-threaded scanner for detecting exposed Swagger/OpenAPI endpoints across web domains and subdomains, with automatic XSS detection, PoC…


Opensource, cross-platform and portable toolkit for automating routine processes when carrying out various works for testing!

A Burp Extension designed to identify argument injection vulnerabilities.


Automated CORS misconfiguration scanner that tests Origin header injection, wildcard reflection, and credential leakage across web applications and…

An open testing platform that probes HTTP/1.1 servers against RFC 9110/9112 requirements, smuggling vectors, and malformed input handling. Add your…

Unofficial Acunetix CLI tool for automated pentesting and bug hunting across large scopes.

Automated GraphQL schema enumeration and data extraction tool that iterates introspection documents, reconstructs queries, and saves responses for…

A comprehensive web application security testing toolkit that combines 10 powerful penetration testing features into one tool.

burpsuite 的Spring漏洞扫描插件。SpringVulScan:支持检测:路由泄露|CVE-2022-22965|CVE-2022-22963|CVE-2022-22947|CVE-2016-4977

Collaborative application security testing between humans and agents via CLI and MCP