The OWASP ZAP core project
Automated Penetration Testing Agentic Framework Powered by LLMs
UFONet - Denial of Service Toolkit
The Pentester’s Companion
Modular CLI framework for managing penetration testing tools
Web application fuzzer
A free and open source interactive HTTPS proxy
Fully autonomous AI hacker to find actual exploits in your web apps
Automation framework for reconnaissance and penetration testing tasks
The browser exploitation framework project
Directory/File, DNS and VHost busting tool written in Go
Scanner detecting the use of JavaScript libraries
Security auditing tool for Linux, macOS, and UNIX-based system
mitmproxy implemented with golang
Malicious traffic detection system
HTTP proxy server,support HTTPS & websocket
CTFs as you need them
XRay for recon, mapping and OSINT gathering from public networks
A lightweight and powerful iOS framework for intercepting HTTP/HTTPS
Count and limit requests by key with atomic increments
The Ray Tracing in One Weekend series of books
Enable self-service operations, give specific users access
Merlin is a cross-platform post-exploitation HTTP/2 Command
High-performance reconnaissance and vulnerability scanning tool
Asset inventory dataset for public bug bounty program targets