
nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling…

Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling…

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

Next generation web scanner

A Python based web application scanner to gather OSINT and fuzz for OWASP vulnerabilities on a target website.

An open-source project in Golang to asess different API Security tools and WAF for detection logic and bypasses

Vulnerable REST API with OWASP top 10 vulnerabilities for security testing

OWASP Web Recon & Directory Discovery Platform

Burp Suite extension for API security testing with 15 attack types, 108+ payloads, intelligent fuzzing, BOLA/IDOR detection, AI integration, and…

Http request smuggling vulnerability scanner

BoB Web Application Security Project

OWASP ASST (Automated Software Security Toolkit) | A Novel Open Source Web Security Scanner.

Rust-powered HTTP Request Smuggling Scanner.

A Burp Extension designed to identify argument injection vulnerabilities.

Ruby command-line interface to Burp Suite's REST API


A comprehensive web application security testing toolkit that combines 10 powerful penetration testing features into one tool.

50+ detectors across 10 categories, with continuous monitoring built in: schedule recurring scans, get alerted only on new findings, track your…