Skip to content
KitploitKITPLOIT
OutilsBlog
Soumettre
OutilsBlog
Soumettre

Outils de Hacking, PenTest et Cybersécurité pour votre Arsenal de Sécurité !

Kitploit est un répertoire d'outils de hacking, de cybersécurité et de pentesting. Découvrez les dernières mises à jour des projets pour trouver des vulnérabilités, analyser des systèmes, automatiser les tests et renforcer votre sécurité.

··Flux·Contact·Confidentialité·© 2026 Kitploit

Répertoire d'outils

Catégories

Voir toutes les catégories
Loading categories
Catégories

Tests de Sécurité des API

Outils pour l'évaluation de la sécurité des API REST, SOAP et GraphQL.

Recommandé par Kitploit

Meilleurs outils

10 sélectionnés
kiterunner preview#1

kiterunner

GitHubassetnote/kiterunner
3.2kil y a 5 ans
zaproxy preview#2

zaproxy

GitHubzaproxy/zaproxy
15.6kil y a 12h 28m
nuclei preview#3

nuclei

GitHubprojectdiscovery/nuclei
30.4kil y a 20h 13m
sqlmap preview#4

sqlmap

GitHubsqlmapproject/sqlmap
38.2kil y a 1 jour
graphql-cop preview#5

graphql-cop

GitHubdolevf/graphql-cop
684il y a 10 mois
graphw00f preview#6

graphw00f

GitHubdolevf/graphw00f
884il y a 3 mois
Arjun preview#7

Arjun

GitHubs0md3v/arjun
6.4kil y a 1 an
jwt_tool preview#8

jwt_tool

GitHubticarpi/jwt_tool
6.7kil y a 1 an
crAPI preview#9

crAPI

GitHubowasp/crapi
1.6kil y a 1 jour
automatic-api-attack-tool preview#10

automatic-api-attack-tool

GitHubimperva/automatic-api-attack-tool
495il y a 6 ans
Plus récentsPertinencePlus populairesMis à jour récemment
367 résultats
CodePath_Week_7-8 preview

CodePath_Week_7-8

GitHubpalmtreeforest/codepath_week_7-8

Devoir CodePath pour les semaines 7 et 8 : CVE-2017-14719, CVE-2019-9787 et modification non authentifiée du contenu de Page/Post via l'API REST

vulnerability-analysisexploitationweb-application-exploitation+3
il y a 7 ans
square__retrofit_CVE-2018-1000850_2-4-0 preview

square__retrofit_CVE-2018-1000850_2-4-0

GitHubshoucheng3/square__retrofit_cve-2018-1000850_2-4-0

Bibliothèque client HTTP typée pour Android et Java, permettant la communication avec des API REST via une configuration de requêtes basée sur des…

general-purpose-utilitiesapi-security-testing
il y a 1 an
Retrofit-1 preview

Retrofit-1

GitHubepicosy/retrofit-1

Client HTTP type-safe pour Android et Java avec liaison d'API basée sur des annotations, support de convertisseurs, et intégration avec OkHttp pour…

general-purpose-utilitiesvulnerability-analysisapi-security-testing
il y a 2 ans
mcp-server preview

mcp-server

GitHuboffensive360/mcp-server

Serveur MCP qui exécute des analyses SAST sur des bases de code locales et renvoie les résultats avec leur sévérité et leurs correctifs, permettant…

static-code-analysisvulnerability-analysiscode-analysis+3
il y a 1 mois
sast-scan-action preview

sast-scan-action

GitHuboffensive360/sast-scan-action

GitHub Action : scan SAST Offensive360 avec sortie SARIF pour l'analyse de code. Plus de 60 langages. Gratuit pour l'open source.

vulnerability-scannersstatic-code-analysiscode-analysis+4
il y a 1 mois
selenium-wire preview
Archived

selenium-wire

GitHubwkeeling/selenium-wire

Étend les bindings Python de Selenium pour vous permettre d'inspecter les requêtes émises par le navigateur.

web-proxies-interceptionapi-security-testinginformation-gathering+2
2.0kil y a 2 ans
nogotofail preview
Archived

nogotofail

GitHubgoogle/nogotofail

Un outil de test de sécurité du trafic réseau en boîte noire sur le chemin.

vulnerability-scannersapi-security-testingweb-security+3
3.0kil y a 3 ans
toxy preview
Archived

toxy

GitHubh2non/toxy

Proxy HTTP hackable pour les tests de résilience et les conditions réseau simulées.

vulnerability-analysisweb-proxies-interceptionapi-security-testing+3
2.7kil y a 4 ans
martian preview
Archived

martian

GitHubgoogle/martian

Martian est une bibliothèque pour construire des proxys HTTP/S personnalisés.

dynamic-analysis-sandboxingweb-proxies-interceptionapi-security-testing+3
2.0kil y a 1 an
hackazon preview
Archived

hackazon

GitHubrapid7/hackazon

Une application web vulnérable moderne

vulnerability-scannersweb-application-exploitationapi-security-testing+3
1.0kil y a 5 ans
frida-fuzzer preview
Archived

frida-fuzzer

GitHubandreafioraldi/frida-fuzzer

Ce fuzzer expérimental est destiné à être utilisé pour le fuzzing en mémoire d'API.

dynamic-analysis-sandboxingexploitationapi-security-testing+3
577il y a 6 ans
burp-rest-api preview
Archived

burp-rest-api

GitHubvmware-archive/burp-rest-api

API REST/JSON pour l'outil de sécurité Burp Suite.

vulnerability-scannersweb-proxies-interceptionscripting-automation+4
566il y a 1 an
poc-graphql preview
Archived

poc-graphql

GitHubrighettod/poc-graphql

Recherche sur GraphQL d'un point de vue AppSec.

vulnerability-analysisweb-application-exploitationapi-security-testing+3
418il y a 3 ans
hooker preview
Archived

hooker

GitHubandroidhooker/hooker

Hooker est un projet open source pour les analyses dynamiques d'applications Android. Ce projet fournit divers outils et applications qui peuvent…

android-securitydynamic-analysis-sandboxingmobile-app-pentesting+3
415il y a 10 ans
GraphCrawler preview
Archived

GraphCrawler

GitHubgsmith257-cyber/graphcrawler

GraphQL toolkit automatisé de test de sécurité

reconnaissancevulnerability-scannersapi-security-testing+3
334il y a 2 ans
syntribos preview
Archived

syntribos

GitHubopenstack-archive/syntribos

Outil de test de sécurité d'API Python du groupe de sécurité OpenStack

vulnerability-scannersapi-security-testingweb-security+2
271il y a 6 ans
authcov preview
Archived

authcov

GitHubauthcov/authcov

Scan de couverture des autorisations d'applications web

authentication-authorizationvulnerability-scannersapi-security-testing+3
234il y a 3 ans
request_smuggler preview
Archived

request_smuggler

GitHubsh1yo/request_smuggler

Scanner de vulnérabilités de contrebande de requêtes HTTP

vulnerability-scannersweb-vulnerability-scannersweb-application-exploitation+3
228il y a 4 ans
Précédent1…192021Suivant