The OWASP ZAP core project
Automated Penetration Testing Agentic Framework Powered by LLMs
UFONet - Denial of Service Toolkit
The Pentester’s Companion
Fully autonomous AI hacker to find actual exploits in your web apps
Modular CLI framework for managing penetration testing tools
Automation framework for reconnaissance and penetration testing tasks
A free and open source interactive HTTPS proxy
Web Debugging Proxy for macOS, iOS, and Android
Web application fuzzer
Directory/File, DNS and VHost busting tool written in Go
The browser exploitation framework project
Scanner detecting the use of JavaScript libraries
HTTP proxy server,support HTTPS & websocket
Security auditing tool for Linux, macOS, and UNIX-based system
Malicious traffic detection system
mitmproxy implemented with golang
CTFs as you need them
The Ray Tracing in One Weekend series of books
A lightweight and powerful iOS framework for intercepting HTTP/HTTPS
Merlin is a cross-platform post-exploitation HTTP/2 Command
Count and limit requests by key with atomic increments
High-performance reconnaissance and vulnerability scanning tool
XRay for recon, mapping and OSINT gathering from public networks
Enable self-service operations, give specific users access