
NtTrace
An strace-like program for the Windows 'native' API

An strace-like program for the Windows 'native' API

Open-source MITM proxy to intercept, inspect, and mock network traffic.


Rust components for traffic interception and redirection, enabling WireGuard device proxying and local app redirection across macOS, Windows, and…

Burp Plugin to decrypt AES encrypted traffic on the fly

This script communicates with the Nessus API in an attempt to help with automating scans. Depending on the flag issued with the script, you can list…

Burp Extension for testing authorization issues. Automated request repeating and parameter value extraction on the fly.

Wireshark for MCP. A transparent proxy that shows every real tool call between your AI client and your MCP servers, live in your terminal.

GraphQL security auditing script with a focus on performing batch GraphQL queries and mutations

SAML2 Burp Extension

Analyze HTTP requests to minimize risks of HTTP Desync attacks (precursor for HTTP request smuggling/splitting).

SSRF plugin for burp Automates SSRF Detection in all of the Request

Automated authorization testing tool that detects unauthorized access by scanning URLs with role-based credentials using YAML templates.

SQLiPy is a Python plugin for Burp Suite that integrates SQLMap using the SQLMap API.

CVE-2026-9830 Proof of Concept

WEB SERVICE SECURITY ASSESSMENT TOOL

A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.

Automated authorization security scanner for OpenAPI-based APIs. Tests GET endpoints with multiple credential sets to detect privilege escalation and…