
Tiredful-API
An intentionally designed broken web application based on REST API.

An intentionally designed broken web application based on REST API.

SQLiPy is a Python plugin for Burp Suite that integrates SQLMap using the SQLMap API.

Automatic authorization enforcement detection extension for burp suite written in Jython developed by Barak Tawily in order to ease application…

Collection of intentionally insecure iOS and Android apps for learning mobile security testing, reverse engineering, and vulnerability analysis,…

A Python based web application scanner to gather OSINT and fuzz for OWASP vulnerabilities on a target website.

Automated Security Testing For REST API's

Burp-Automator: A Burp Suite Automation Tool with Slack Integration. It can be used with Jenkins and Selenium to automate Dynamic Application…

OWASP iGoat (Swift) - A Damn Vulnerable Swift Application for iOS

Modular penetration testing framework integrating multiple tools for automated web application security assessment, aligned with OWASP Testing Guide,…

Ruby command-line interface to Burp Suite's REST API

OWASP iGoat - A Learning Tool for iOS App Pentesting and Security by Swaroop Yermalkar

Burp Commander written in Go

Burp Plugin to decrypt AES encrypted traffic on the fly

Vulnerability Patterns Detector for C# and VB.NET

The OWASP SecureTea Project provides a one-stop security solution for various devices (personal computers / servers / IoT devices)

OWASP SecurityRAT (version 1.x) - Tool for handling security requirements in development

A rapid HTTP downgrade smuggling scanner written in Go.

OWASP ZSC - Shellcode/Obfuscate Code Generator https://www.secologist.com/