
filebuster
An extremely fast and flexible web fuzzer

An extremely fast and flexible web fuzzer

The collaborative web app pentest suite

In the realm of cybersecurity, accurately identifying and characterizing web servers is crucial for threat detection, vulnerability assessment, and…

Martian is a library for building custom HTTP/S proxies

Proof of concept for CVE-2021-31166, a remote HTTP.sys use-after-free triggered remotely.

Fast and extensible multi-platform HTTP/1-2-3 web server with automatic HTTPS

Squid Web Proxy Cache - Source Code

HTTP(S)/WS(S)/TCP Tunnels to localhost using only SSH.

HULK DoS tool ported to Go with some additional features.

Transparent man-in-the-middle proxy that terminates SSL/TLS connections, forges certificates on-the-fly, and logs decrypted traffic for network…

An open testing platform that probes HTTP/1.1 servers against RFC 9110/9112 requirements, smuggling vectors, and malformed input handling. Add your…

Fast, multi-probe HTTP toolkit for reconnaissance and information gathering. Probes TLS, CSP, headers, tech stack, and CDN. Supports matchers,…

Go-based Web Application Firewall library compatible with ModSecurity SecLang rules and OWASP Core Rule Set v4, providing real-time HTTP traffic…

An OOB interaction gathering server and client library

CLI tool that audits OpenAPI specifications, validates them against best practices, and runs automated security tests to detect vulnerabilities and…

Lightweight web proxy for intercepting, inspecting, and modifying HTTP traffic to audit web applications during penetration testing and bug bounty…

Automated HTTP Request Repeating With Burp Suite

ModSecurity is an open source, cross platform web application firewall (WAF) engine for Apache, IIS and Nginx. It has a robust event-based…